CVE-2020-7327: McAfee MVEDR - Improperly implemented security check
Improperly implemented security check in McAfee MVISION Endpoint Detection and Response Client (MVEDR) prior to 3.2.0 may allow local administrators to execute malicious code via stopping a core Windows service leaving McAfee core trust component in an inconsistent state resulting in MVEDR failing open rather than closed
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-7327?
CVE-2020-7327 is classified as a high severity vulnerability due to its potential to allow local administrators to execute malicious code.
How do I fix CVE-2020-7327?
To resolve CVE-2020-7327, upgrade the McAfee MVISION Endpoint Detection and Response Client to version 3.2.0 or later.
What systems are affected by CVE-2020-7327?
CVE-2020-7327 affects McAfee MVISION Endpoint Detection and Response Client versions prior to 3.2.0.
Who is impacted by CVE-2020-7327?
Local administrators who can stop core Windows services are primarily impacted by CVE-2020-7327.
What is the impact of CVE-2020-7327 on McAfee users?
The impact of CVE-2020-7327 includes the risk of execution of malicious code due to an inconsistent state of the McAfee core trust component.