Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2018-6664


Application Protections Bypass vulnerability in Microsoft Windows in McAfee Data Loss Prevention (DLP) Endpoint before 10.0.500 and DLP Endpoint before 11.0.400 allows authenticated users to bypass the product block action via a command-line utility.


Published

2018-05-25T13:29:00.303

Last Modified

2024-11-21T04:11:04.677

Status

Modified

Source

[email protected]

Severity

CVSSv3.0: 5.8 (MEDIUM)

CVSSv2 Vector

AV:N/AC:L/Au:S/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: SINGLE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

8.0

Impact Score

6.4

Weaknesses
  • Type: Primary
    CWE-347

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application mcafee data_loss_prevention_endpoint < 10.0.500 Yes
Operating System microsoft windows - No
Application mcafee data_loss_prevention_endpoint < 11.0.400 Yes
Operating System microsoft windows - No

References