CVE-2015-1305

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
06/02/2015
Last modified:
12/04/2025

Description

McAfee Data Loss Prevention Endpoint (DLPe) before 9.3.400 allows local users to write to arbitrary memory locations, and consequently gain privileges, via a crafted (1) 0x00224014 or (2) 0x0022c018 IOCTL call.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mcafee:data_loss_prevention_endpoint:*:*:*:*:*:*:*:* 9.3.300 (including)
cpe:2.3:o:microsoft:windows_xp:*:*:*:*:*:*:*:*