A DLL sideloading vulnerability in McAfee Agent for Windows prior to 5.7.4 could allow a local user to perform a DLL sideloading attack with an unsigned DLL with a specific name and in a specific location. This would result in the user gaining elevated permissions and the ability to execute arbitrary code as the system user, through not checking the DLL signature.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: trellix

Published: 2021-09-22T13:25:11

Updated: 2024-08-03T23:10:30.223Z

Reserved: 2021-04-27T00:00:00

Link: CVE-2021-31841

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-09-22T14:15:07.497

Modified: 2024-11-21T06:06:20.173

Link: CVE-2021-31841

cve-icon Redhat

No data.