CVE-2019-3621
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/07/2019
Last modified:
07/11/2023
Description
Authentication protection bypass vulnerability in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.0 allows physical local user to bypass the Windows lock screen via DLPe processes being killed just prior to the screen being locked or when the screen is locked. The attacker requires physical access to the machine.
Impact
Base Score 3.x
6.20
Severity 3.x
MEDIUM
Base Score 2.0
4.60
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:mcafee:data_loss_prevention_endpoint:*:*:*:*:*:*:*:* | 11.0 (including) | 11.1.200 (excluding) |
| cpe:2.3:a:mcafee:data_loss_prevention_endpoint:*:*:*:*:*:*:*:* | 11.2.000 (including) | 11.3.0 (excluding) |
| cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



