← Back

CVE-2020-7337

nvd nist
Published: Dec 9, 2020Modified: Jun 17, 2026

JSON object

Loading...
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD

Description

Incorrect Permission Assignment for Critical Resource vulnerability in McAfee VirusScan Enterprise (VSE) prior to 8.8 Patch 16 allows local administrators to bypass local security protection through VSE not correctly integrating with Windows Defender Application Control via careful manipulation of the Code Integrity checks.

Affected (17)

1 product
Virusscan Enterprise
Configuration A
17 vulnerable
Vulnerable SoftwareAffected Versions
Mcafee
Before 8.8
Version 8.8
Version 8.8 patch10
Version 8.8 patch11
Version 8.8 patch12
Version 8.8 patch13
Version 8.8 patch14
Version 8.8 patch15
Version 8.8 patch1
Version 8.8 patch2
Version 8.8 patch3
Version 8.8 patch4
Version 8.8 patch5
Version 8.8 patch6
Version 8.8 patch7
Version 8.8 patch8
Version 8.8 patch9

References (2)

Timeline

No history available yet.