Back to Database
Status published
Medium
CVE-2019-3613
DLL search order hijacking in MA
Vulnerability Description
DLL Search Order Hijacking vulnerability in McAfee Agent (MA) prior to 5.6.4 allows attackers with local access to execute arbitrary code via execution from a compromised folder.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-3613
Credits & Attribution
No credits recorded in the NVD database.
More from McAfee, LLC
View All →CVE-2021-23879
Unquoted service path vulnerability in McAfee Endpoint Product Removal (EPR) Tool prior to 21.2 allows local administrators to execute arbitrary code, with higher-level privileges, via execution from a compromised folder. The tool did not enforce and ...
Medium
6.7
CVE-2020-7343
Improper Authorization vulnerability in MA
Medium
5.5
CVE-2020-7337
Incorrect Permission Assignment for Critical Resource
Medium
6.5
CVE-2020-7331
Unquoted service executable path in McAfee Endpoint Security (ENS)
High
7.8
CVE-2020-7329
Server-Side Request Forgery (SSRF) in MVISION Endpoint ePO extension
High
7.2
Affected Vendor
McAfee, LLC
View all reports →Affected Software
McAfee Agent (MA)
Vulnerable Versions:
5.6.x
Timeline
Official Publish:
June 10th, 2020
Last Modified:
September 16th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:N