CVE-2019-3636

Severity CVSS v4.0:
Pending analysis
Type:
CWE-312 Cleartext Storage of Sensitive Information
Publication date:
28/10/2019
Last modified:
07/11/2023

Description

A File Masquerade vulnerability in McAfee Total Protection (MTP) version 16.0.R21 and earlier in Windows client allowed an attacker to read the plaintext list of AV-Scan exclusion files from the Windows registry, and to possibly replace excluded files with potential malware without being detected.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mcafee:total_protection:*:*:*:*:*:*:*:* 16.0.r21 (including)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*