CVE-2015-3987

McAfee ePO Deep Command 2.1-2.2 - Untrusted Search Path Privilege Escalation

Title source: llm
STIX 2.1

Description

Multiple unquoted Windows search path vulnerabilities in the (1) Client Management and (2) Gateway in McAfee ePO Deep Command 2.1 and 2.2 before HF 1058831 allow local users to gain privileges via unspecified vectors.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/74685
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1032244

Scores

EPSS 0.0007
EPSS Percentile 21.9%

Details

CWE
CWE-426
Status published
Products (2)
mcafee/epo_deep_command 2.1
mcafee/epo_deep_command 2.2
Published May 14, 2015
Tracked Since Feb 18, 2026