CVE-2022-43751: High severity McAfee Total Protection vulnerability
McAfee Total Protection prior to version 16.0.49 contains an uncontrolled search path element vulnerability due to the use of a variable pointing to a subdirectory that may be controllable by an unprivileged user. This may have allowed the unprivileged user to execute arbitrary code with system privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
McAfee Total Protectionto a version that resolves this vulnerability.Fixed in 16.0.49
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-43751.
What is the severity of CVE-2022-43751?
The severity of CVE-2022-43751 is high (7.8).
What software is affected by CVE-2022-43751?
McAfee Total Protection prior to version 16.0.49 is affected by CVE-2022-43751.
How does CVE-2022-43751 impact the affected software?
CVE-2022-43751 allows an unprivileged user to execute arbitrary code with system privileges due to an uncontrolled search path element vulnerability.
Is there a fix available for CVE-2022-43751?
Yes, upgrading to McAfee Total Protection version 16.0.49 or later will fix CVE-2022-43751.