Vulnerability Description
Untrusted search path vulnerability in McAfee VirusScan Enterprise before 8.7i allows local users to gain privileges via a Trojan horse DLL in an unspecified directory, as demonstrated by scanning a document located on a remote share.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mcafee | Virusscan Enterprise | <= 8.5i |
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/78448
- https://kc.mcafee.com/corporate/index?page=content&id=SB10013Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/78448
- https://kc.mcafee.com/corporate/index?page=content&id=SB10013Vendor Advisory
FAQ
What is CVE-2009-5118?
CVE-2009-5118 is a vulnerability with a CVSS score of 9.3 (HIGH). Untrusted search path vulnerability in McAfee VirusScan Enterprise before 8.7i allows local users to gain privileges via a Trojan horse DLL in an unspecified directory, as demonstrated by scanning a d...
How severe is CVE-2009-5118?
CVE-2009-5118 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2009-5118?
Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Virusscan Enterprise.