
Cloud Vulnerability DB
A community-led vulnerabilities database
A vulnerability identified as CVE-2020-7337 was discovered in McAfee VirusScan Enterprise (VSE) versions prior to 8.8 Patch 16. The vulnerability is classified as an Incorrect Permission Assignment for Critical Resource issue that affects the software's integration with Windows Defender Application Control (CVE Mitre).
The vulnerability stems from VSE not correctly integrating with Windows Defender Application Control, specifically in relation to Code Integrity checks. This security flaw was assigned on January 21, 2020, and affects the core security functionality of the McAfee VirusScan Enterprise software (CVE Mitre).
The vulnerability allows local administrators to bypass local security protection mechanisms through careful manipulation of the Code Integrity checks (CVE Mitre).
The vulnerability requires local administrator access to exploit, indicating a somewhat limited attack surface but potentially serious consequences for affected systems (CVE Mitre).
The vulnerability has been addressed in McAfee VirusScan Enterprise 8.8 Patch 16. Users of affected versions should upgrade to this patched version to mitigate the security risk (CVE Mitre).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."