CVE-2021-23877

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
26/10/2021
Last modified:
07/11/2023

Description

Privilege escalation vulnerability in the Windows trial installer of McAfee Total Protection (MTP) prior to 16.0.34_x may allow a local user to run arbitrary code as the admin user by replacing a specific temporary file created during the installation of the trial version of MTP.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mcafee:total_protection:*:*:*:*:free_trial:*:*:* 16.0.34 (excluding)