CVE-2018-6664
MEDIUMMcAfee Data Loss Prevention Endpoint < 10.0.500 - Authenticated Application Protections Bypass via Command-Line Utility
Title source: llmDescription
Application Protections Bypass vulnerability in Microsoft Windows in McAfee Data Loss Prevention (DLP) Endpoint before 10.0.500 and DLP Endpoint before 11.0.400 allows authenticated users to bypass the product block action via a command-line utility.
References (4)
Core 4
Core References
Vendor Advisory
https://kc.mcafee.com/corporate/index?page=content&id=SB10233
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/104299
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1040895
Vendor Advisory x_refsource_confirm
https://kc.mcafee.com/corporate/index?page=content&id=SB10237
Scores
CVSS v3
5.8
EPSS
0.0027
EPSS Percentile
50.2%
Attack Vector
PHYSICAL
CVSS:3.0/AV:P/AC:H/PR:L/UI:R/S:U/C:H/I:L/A:H
Details
CWE
CWE-347
Status
published
Products (1)
mcafee/data_loss_prevention_endpoint
< 10.0.500
Published
May 25, 2018
Tracked Since
Feb 18, 2026