A DLL sideloading vulnerability in McAfee Agent for Windows prior to 5.7.4 could allow a local user to perform a DLL sideloading attack with an unsigned DLL with a specific name and in a specific location. This would result in the user gaining elevated permissions and the ability to execute arbitrary code as the system user, through not checking the DLL signature.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: trellix
Published: 2021-09-22T13:25:11
Updated: 2024-08-03T23:10:30.223Z
Reserved: 2021-04-27T00:00:00
Link: CVE-2021-31841
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-09-22T14:15:07.497
Modified: 2024-11-21T06:06:20.173
Link: CVE-2021-31841
Redhat
No data.