PT-2024-9205 · Mcafee · Mcafee Total Protection

Published

2024-07-24

·

Updated

2024-11-27

·

CVE-2024-49592

CVSS v3.1

6.7

Medium

VectorAV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: McAfee Total Protection versions 16.0.53
Description: The issue is related to an Uncontrolled Search Path Element in the McAfee Direct Stub Installer, which can allow an attacker to elevate their privileges and execute arbitrary code. This can be achieved through a type of attack known as "DLL-squatting." The vulnerability only affects the execution of the installer and does not leave McAfee Total Protection in a vulnerable state after installation is completed.
Recommendations: For version 16.0.53, consider disabling the vulnerable installer component until a patch is available. Restrict access to the installer to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2024-10893
CVE-2024-49592
ZDI-24-1517

Affected Products

Mcafee Total Protection