CVE-2018-6664

MEDIUM

McAfee Data Loss Prevention Endpoint < 10.0.500 - Authenticated Application Protections Bypass via Command-Line Utility

Title source: llm
STIX 2.1

Description

Application Protections Bypass vulnerability in Microsoft Windows in McAfee Data Loss Prevention (DLP) Endpoint before 10.0.500 and DLP Endpoint before 11.0.400 allows authenticated users to bypass the product block action via a command-line utility.

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/104299
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1040895

Scores

CVSS v3 5.8
EPSS 0.0027
EPSS Percentile 50.2%
Attack Vector PHYSICAL
CVSS:3.0/AV:P/AC:H/PR:L/UI:R/S:U/C:H/I:L/A:H

Details

CWE
CWE-347
Status published
Products (1)
mcafee/data_loss_prevention_endpoint < 10.0.500
Published May 25, 2018
Tracked Since Feb 18, 2026