Back to Database
Status published
Medium
CVE-2020-7253
Improper access control vulnerability in McAfee Agent
Vulnerability Description
Improper access control vulnerability in masvc.exe in McAfee Agent (MA) prior to 5.6.4 allows local users with administrator privileges to disable self-protection via a McAfee supplied command-line utility.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-7253
Credits & Attribution
No credits recorded in the NVD database.
More from McAfee, LLC
View All →CVE-2021-23879
Unquoted service path vulnerability in McAfee Endpoint Product Removal (EPR) Tool prior to 21.2 allows local administrators to execute arbitrary code, with higher-level privileges, via execution from a compromised folder. The tool did not enforce and ...
Medium
6.7
CVE-2020-7343
Improper Authorization vulnerability in MA
Medium
5.5
CVE-2020-7337
Incorrect Permission Assignment for Critical Resource
Medium
6.5
CVE-2020-7331
Unquoted service executable path in McAfee Endpoint Security (ENS)
High
7.8
CVE-2020-7329
Server-Side Request Forgery (SSRF) in MVISION Endpoint ePO extension
High
7.2
Affected Vendor
McAfee, LLC
View all reports →Affected Software
McAfee Agent (MA)
Vulnerable Versions:
5.6.x
Timeline
Official Publish:
March 12th, 2020
Last Modified:
September 17th, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:H