Rapid7

vulnerability

McAfee Endpoint Security Platform: CVE-2020-7276: Endpoint security for windows update fixes multiple vulnerabilities (SB10309)

Severity
5
CVSS
(AV:L/AC:L/Au:N/C:P/I:P/A:P)
Published
Apr 15, 2020
Added
Aug 11, 2020
Modified
Mar 10, 2022

Description

Authentication bypass vulnerability in MfeUpgradeTool in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allows administrator users to access policy settings via running this tool.

Solutions

mcafee-endpoint-security-platform-upgrade-10-5-5-5352mcafee-endpoint-security-platform-upgrade-10-6-1-1936mcafee-endpoint-security-platform-upgrade-10-7-0-1675
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.