Back to Database
Status published
High
CVE-2021-23874
McAfee Total Protection (MTP) privilege escalation vulnerability
Vulnerability Description
Arbitrary Process Execution vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevated privileges and execute arbitrary code bypassing MTP self-defense.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-23874
Credits & Attribution
No credits recorded in the NVD database.
More from McAfee,LLC
View All →CVE-2022-1824
McAfee MCPR privilege escalation
High
7.9
CVE-2022-1823
McAfee MCPR privilege escalation
High
7.9
CVE-2022-1258
SQL injection vulnerability in McAfee Agent's ePO extension
High
8.4
CVE-2022-1257
Improper Verification of Cryptographic Signature by McAfee Agent
Medium
6.1
CVE-2022-1256
Improper Privilege Management in McAfee Agent for Windows
High
7.8
Affected Vendor
McAfee,LLC
View all reports →Affected Software
McAfee Total Protection (MTP)
Vulnerable Versions:
unspecified
Timeline
Official Publish:
February 10th, 2021
Last Modified:
October 21st, 2025
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H