Description
Unquoted service path vulnerability in McAfee Endpoint Product Removal (EPR) Tool prior to 21.2 allows local administrators to execute arbitrary code, with higher-level privileges, via execution from a compromised folder. The tool did not enforce and protect the execution path. Local admin privileges are required to place the files in the required location.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-10805 | Unquoted service path vulnerability in McAfee Endpoint Product Removal (EPR) Tool prior to 21.2 allows local administrators to execute arbitrary code, with higher-level privileges, via execution from a compromised folder. The tool did not enforce and protect the execution path. Local admin privileges are required to place the files in the required location. |
References
History
No history.
Status: PUBLISHED
Assigner: trellix
Published:
Updated: 2024-09-17T03:29:09.951Z
Reserved: 2021-01-12T00:00:00.000Z
Link: CVE-2021-23879
No data.
Status : Modified
Published: 2021-03-15T19:15:13.323
Modified: 2024-11-21T05:51:59.483
Link: CVE-2021-23879
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD