Vulnerability Description
Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevated privileges and perform arbitrary file deletion as the SYSTEM user potentially causing Denial of Service via manipulating Junction link, after enumerating certain files, at a specific time.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mcafee | Total Protection | < 16.0.30 |
Related Weaknesses (CWE)
References
- http://service.mcafee.com/FAQDocument.aspx?&id=TS103114
- https://www.zerodayinitiative.com/advisories/ZDI-21-175/
- http://service.mcafee.com/FAQDocument.aspx?&id=TS103114
- https://www.zerodayinitiative.com/advisories/ZDI-21-175/
FAQ
What is CVE-2021-23873?
CVE-2021-23873 is a vulnerability with a CVSS score of 7.8 (HIGH). Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevated privileges and perform arbitrary file deletion as the SYSTEM user potentially ...
How severe is CVE-2021-23873?
CVE-2021-23873 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-23873?
Check the references section above for vendor advisories and patch information. Affected products include: Mcafee Total Protection.