CVE-2021-31839: Incorrect permissions on McAfee Agent for Windows event folder
Improper privilege management vulnerability in McAfee Agent for Windows prior to 5.7.3 allows a local user to modify event information in the MA event folder. This allows a local user to either add false events or remove events from the event logs prior to them being sent to the ePO server.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this McAfee Agent for Windows vulnerability?
The vulnerability ID for this McAfee Agent for Windows vulnerability is CVE-2021-31839.
What is the title of this vulnerability?
The title of this vulnerability is 'Improper privilege management vulnerability in McAfee Agent for Windows prior to 5.7.3 allows a local user to modify event information in the MA event folder.'
What is the severity of CVE-2021-31839?
The severity of CVE-2021-31839 is medium with a severity value of 3.3.
How does CVE-2021-31839 affect McAfee Agent for Windows?
CVE-2021-31839 affects McAfee Agent for Windows prior to version 5.7.3.
How can this vulnerability be fixed?
To fix this vulnerability, update McAfee Agent for Windows to version 5.7.3 or later.