CVE-2020-7260

HIGH

McAfee Application and Change Control < 8.3.0 - DLL Side Loading via Installer Execution from Compromised Folder

Title source: llm
STIX 2.1

Description

DLL Side Loading vulnerability in the installer for McAfee Application and Change Control (MACC) prior to 8.3 allows local users to execute arbitrary code via execution from a compromised folder.

References (1)

Core 1
Core References

Scores

CVSS v3 7.3
EPSS 0.0005
EPSS Percentile 16.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H

Details

CWE
CWE-264 CWE-426
Status published
Products (1)
mcafee/application_and_change_control < 8.3.0
Published Mar 26, 2020
Tracked Since Feb 18, 2026