PT-2006-5640 · Mcafee · Mcafee Virusscan Enterprise+1

Eitan Caspi

·

Published

2006-09-19

·

Updated

2018-10-17

·

CVE-2006-4886

CVSS v2.0

3.7

Low

VectorAV:L/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions McAfee VirusScan Enterprise version 7.1.0 McAfee Scan Engine version 4.4.00
Description The issue allows local privileged users to bypass security restrictions and disable the On-Access Scan option, possibly due to an interface-related race condition. This can be achieved by opening the program via the task bar and quickly clicking the Disable button.
Recommendations For McAfee VirusScan Enterprise version 7.1.0, consider restricting access to the On-Access Scan option to prevent local privileged users from disabling it. For McAfee Scan Engine version 4.4.00, avoid using the Disable button in the task bar interface until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-4886

Affected Products

Mcafee Scan Engine
Mcafee Virusscan Enterprise