Mcafee Llc Mcafee Total Protection vulnerabilities
10 known vulnerabilities affecting mcafee_llc/mcafee_total_protection.
Total CVEs
10
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
HIGH6MEDIUM4
Vulnerabilities
Page 1 of 1
CVE-2021-23874P2HIGHCVSS 7.8KEV≥ unspecified, < 16.0.302021-02-10
CVE-2021-23874 [HIGH] CWE-269 CVE-2021-23874: Arbitrary Process Execution vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a
Arbitrary Process Execution vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevated privileges and execute arbitrary code bypassing MTP self-defense.
nvd
CVE-2020-7283P3HIGHCVSS 8.8v16.0.R262020-07-03
CVE-2020-7283 [HIGH] CWE-274 CVE-2020-7283: Privilege Escalation vulnerability in McAfee Total Protection (MTP) before 16.0.R26 allows local use
Privilege Escalation vulnerability in McAfee Total Protection (MTP) before 16.0.R26 allows local users to create and edit files via symbolic link manipulation in a location they would otherwise not have access to. This is achieved through running a malicious script or program on the target machine.
nvd
CVE-2021-23872P3HIGHCVSS 7.8≥ unspecified, < 16.0.322021-05-12
CVE-2021-23872 [HIGH] CWE-59 CVE-2021-23872: Privilege Escalation vulnerability in the File Lock component of McAfee Total Protection (MTP) prior
Privilege Escalation vulnerability in the File Lock component of McAfee Total Protection (MTP) prior to 16.0.32 allows a local user to gain elevated privileges by manipulating a symbolic link in the IOCTL interface.
nvd
CVE-2021-23891P3HIGHCVSS 7.8≥ unspecified, < 16.0.322021-05-12
CVE-2021-23891 [HIGH] CWE-269 CVE-2021-23891: Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.32 allows a local
Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.32 allows a local user to gain elevated privileges by impersonating a client token which could lead to the bypassing of MTP self-defense.
nvd
CVE-2020-7335P3HIGHCVSS 7.8≥ unspecified, ≤ 16.0.292020-12-01
CVE-2020-7335 [HIGH] CWE-269 CVE-2020-7335: Privilege Escalation vulnerability in Microsoft Windows client McAfee Total Protection (MTP) prior t
Privilege Escalation vulnerability in Microsoft Windows client McAfee Total Protection (MTP) prior to 16.0.29 allows local users to gain elevated privileges via careful manipulation of a folder by creating a junction link. This exploits a lack of protection through a timing issue and is only exploitable in a small time window.
nvd
CVE-2021-23876P3HIGHCVSS 7.8≥ unspecified, < 16.0.302021-02-10
CVE-2021-23876 [HIGH] CWE-269 CVE-2021-23876: Bypass Remote Procedure call in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user t
Bypass Remote Procedure call in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevated privileges and perform arbitrary file modification as the SYSTEM user potentially causing Denial of Service via executing carefully constructed malware.
nvd
CVE-2019-3648P4MEDIUMCVSS 6.7≥ 16.0.x, < 16.0.R22 Refresh 12019-11-13
CVE-2019-3648 [MEDIUM] CWE-426 CVE-2019-3648: A Privilege Escalation vulnerability in the Microsoft Windows client in McAfee Total Protection 16.0
A Privilege Escalation vulnerability in the Microsoft Windows client in McAfee Total Protection 16.0.R22 and earlier allows administrators to execute arbitrary code via carefully placing malicious files in specific locations protected by administrator permission.
nvd
CVE-2021-23873P4MEDIUMCVSS 6.1≥ unspecified, < 16.0.302021-02-10
CVE-2021-23873 [MEDIUM] CWE-59 CVE-2021-23873: Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local
Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevated privileges and perform arbitrary file deletion as the SYSTEM user potentially causing Denial of Service via manipulating Junction link, after enumerating certain files, at a specific time.
nvd
CVE-2020-7282P4MEDIUMCVSS 6.3v16.0.R262020-07-03
CVE-2020-7282 [MEDIUM] CWE-59 CVE-2020-7282: Privilege Escalation vulnerability in McAfee Total Protection (MTP) before 16.0.R26 allows local use
Privilege Escalation vulnerability in McAfee Total Protection (MTP) before 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.
nvd
CVE-2020-7281P4MEDIUMCVSS 6.3v16.0.R262020-07-03
CVE-2020-7281 [MEDIUM] CWE-269 CVE-2020-7281: Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.R26 allows local u
Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.
nvd