Unauthenticated Local Administrator Uninstallation Vulnerability in McAfee Endpoint Security

Unauthenticated Local Administrator Uninstallation Vulnerability in McAfee Endpoint Security

CVE-2021-23880 · MEDIUM Severity

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N

Improper Access Control in attribute in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update allows authenticated local administrator user to perform an uninstallation of the anti-malware engine via the running of a specific command with the correct parameters.

Learn more about our User Device Pen Test.