Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-31841— DLL side loading vulnerability in MA for Windows

CVSS 8.2 · High EPSS 0.02% · P5
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2021-31841

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
DLL side loading vulnerability in MA for Windows
Source: NVD (National Vulnerability Database)
Vulnerability Description
A DLL sideloading vulnerability in McAfee Agent for Windows prior to 5.7.4 could allow a local user to perform a DLL sideloading attack with an unsigned DLL with a specific name and in a specific location. This would result in the user gaining elevated permissions and the ability to execute arbitrary code as the system user, through not checking the DLL signature.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
不可信的搜索路径
Source: NVD (National Vulnerability Database)
Vulnerability Title
Mcafee McAfee Agent 数据伪造问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Mcafee McAfee Agent(MA)是美国迈克菲(Mcafee)公司的一套提供了ePolicy Orchestrator(杀毒软件管理平台)与被管理产品之间的安全通信的客户端组件。 McAfee Agent for Windows 5.7.4 版本之前存在数据伪造问题漏洞,该漏洞可能允许本地用户使用具有特定名称和特定位置的未签名 DLL 执行 DLL 旁加载攻击。 这将导致用户通过不检查 DLL 签名获得提升的权限和作为系统用户执行任意代码的能力。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
McAfee,LLCMcAfee Agent for Windows unspecified ~ 5.7.4 -

II. Public POCs for CVE-2021-31841

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2021-31841

登录查看更多情报信息。

Same Patch Batch · McAfee,LLC · 2021-09-22 · 3 CVEs total

CVE-2021-318478.2 HIGHImproper privilege management in repair process of MA for Windows
CVE-2021-318365.6 MEDIUMImproper Privilege Management in MA for Windows

IV. Related Vulnerabilities

V. Comments for CVE-2021-31841

No comments yet


Leave a comment