Privilege Escalation vulnerability during daily DAT updates when using McAfee Virus Scan Enterprise (VSE) prior to 8.8 Patch 15 allows local users to cause the deletion and creation of files they would not normally have permission to through altering the target of symbolic links. This is timing dependent.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Sep 2024 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | Symbolic Link vulnerability during DAT update | Symbolic Link vulnerability during DAT update |
MITRE
Status: PUBLISHED
Assigner: trellix
Published: 2020-06-10T11:52:43.610724Z
Updated: 2024-09-16T16:53:22.302Z
Reserved: 2020-01-21T00:00:00
Link: CVE-2020-7280
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-06-10T12:15:11.493
Modified: 2024-11-21T05:36:58.820
Link: CVE-2020-7280
Redhat
No data.