CVE-2016-8026

HIGH

Intel Security McAfee Security Scan Plus <3.11.469 - Command Injection

Title source: llm
STIX 2.1

Description

Arbitrary command execution vulnerability in Intel Security McAfee Security Scan Plus (SSP) 3.11.469 and earlier allows authenticated users to gain elevated privileges via unspecified vectors.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/98068

Scores

CVSS v3 7.8
EPSS 0.0007
EPSS Percentile 22.0%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-264
Status published
Products (2)
Intel/McAfee Security Scan Plus (SSP) 3.11.469 and earlier
mcafee/security_scan_plus < 3.11.469
Published Mar 14, 2017
Tracked Since Feb 18, 2026