CVE-2021-31843: Improper access control vulnerability in McAfee ENS for Windows
Improper privileges management vulnerability in McAfee Endpoint Security (ENS) Windows prior to 10.7.0 September 2021 Update allows local users to access files which they would otherwise not have access to via manipulating junction links to redirect McAfee folder operations to an unintended location.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-31843?
CVE-2021-31843 is an improper privileges management vulnerability in McAfee Endpoint Security (ENS) Windows prior to version 10.7.0.
How does CVE-2021-31843 affect McAfee Endpoint Security?
CVE-2021-31843 allows local users to access files which they would otherwise not have access to via manipulating junction links to redirect McAfee folder operations to an unintended location.
What is the severity of CVE-2021-31843?
CVE-2021-31843 has a severity rating of 7.8 (high).
Which software versions are affected by CVE-2021-31843?
CVE-2021-31843 affects McAfee Endpoint Security Windows versions prior to 10.7.0.
How can I fix CVE-2021-31843?
To fix CVE-2021-31843, update McAfee Endpoint Security Windows to version 10.7.0 or later.