CVE-2023-25134
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/03/2023
Last modified:
28/02/2025
Description
McAfee Total Protection prior to 16.0.50 may allow an adversary (with full administrative access) to modify a McAfee specific Component Object Model (COM) in the Windows Registry. This can result in the loading of a malicious payload.
Impact
Base Score 3.x
6.70
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:mcafee:total_protection:*:*:*:*:*:*:*:* | 16.0.50 (excluding) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://www.mcafee.com/en-us/consumer-corporate/mcafee-labs/product-security-bulletins.html
- https://www.mcafee.com/support/?articleId=TS103398&page=shell&shell=article-view
- https://www.mcafee.com/en-us/consumer-corporate/mcafee-labs/product-security-bulletins.html
- https://www.mcafee.com/support/?articleId=TS103398&page=shell&shell=article-view



