Vulnerability Description
Privilege escalation vulnerability in Windows 7 and Windows 10 in McAfee Security Scan Plus (SSP) 3.11.376 allows attackers to load a replacement of the version.dll file via McAfee McUICnt.exe onto a Windows system.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mcafee | Security Scan Plus | <= 3.11.376 |
| Microsoft | Windows 10 | All versions |
| Microsoft | Windows 7 | - |
Related Weaknesses (CWE)
References
- https://service.mcafee.com/webcenter/portal/cp/home/articleview?articleId=TS1025Vendor Advisory
- https://service.mcafee.com/webcenter/portal/cp/home/articleview?articleId=TS1025Vendor Advisory
FAQ
What is CVE-2016-8008?
CVE-2016-8008 is a vulnerability with a CVSS score of 8.8 (HIGH). Privilege escalation vulnerability in Windows 7 and Windows 10 in McAfee Security Scan Plus (SSP) 3.11.376 allows attackers to load a replacement of the version.dll file via McAfee McUICnt.exe onto a ...
How severe is CVE-2016-8008?
CVE-2016-8008 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-8008?
Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Security Scan Plus, Microsoft Windows 10, Microsoft Windows 7.