PT-2006-5640 · Mcafee · Mcafee Virusscan Enterprise+1
Eitan Caspi
·
Published
2006-09-19
·
Updated
2018-10-17
·
CVE-2006-4886
CVSS v2.0
3.7
Low
| Vector | AV:L/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
McAfee VirusScan Enterprise version 7.1.0
McAfee Scan Engine version 4.4.00
Description
The issue allows local privileged users to bypass security restrictions and disable the On-Access Scan option, possibly due to an interface-related race condition. This can be achieved by opening the program via the task bar and quickly clicking the Disable button.
Recommendations
For McAfee VirusScan Enterprise version 7.1.0, consider restricting access to the On-Access Scan option to prevent local privileged users from disabling it.
For McAfee Scan Engine version 4.4.00, avoid using the Disable button in the task bar interface until a fix is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mcafee Scan Engine
Mcafee Virusscan Enterprise