Description
A DLL sideloading vulnerability in McAfee Agent for Windows prior to 5.7.4 could allow a local user to perform a DLL sideloading attack with an unsigned DLL with a specific name and in a specific location. This would result in the user gaining elevated permissions and the ability to execute arbitrary code as the system user, through not checking the DLL signature.
Published: 2021-09-22
Score: 8.2 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-18716 A DLL sideloading vulnerability in McAfee Agent for Windows prior to 5.7.4 could allow a local user to perform a DLL sideloading attack with an unsigned DLL with a specific name and in a specific location. This would result in the user gaining elevated permissions and the ability to execute arbitrary code as the system user, through not checking the DLL signature.
History

No history.

Subscriptions

Mcafee Mcafee Agent
cve-icon MITRE

Status: PUBLISHED

Assigner: trellix

Published:

Updated: 2024-08-03T23:10:30.223Z

Reserved: 2021-04-27T00:00:00.000Z

Link: CVE-2021-31841

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-09-22T14:15:07.497

Modified: 2024-11-21T06:06:20.173

Link: CVE-2021-31841

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses