4.6
CVSSv2

CVE-2019-3652

Published: 09/10/2019 Updated: 07/11/2023
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.3 | Impact Score: 3.4 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Code Injection vulnerability in EPSetup.exe in McAfee Endpoint Security (ENS) before 10.6.1 October 2019 Update allows local user to get their malicious code installed by the ENS installer via code injection into EPSetup.exe by an attacker with access to the installer.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mcafee endpoint_security

mcafee endpoint_security 10.6.1