Skip to content

Latest commit

 

History

History
17 lines (11 loc) · 929 Bytes

CVE-2021-23879.md

File metadata and controls

17 lines (11 loc) · 929 Bytes

Description

Unquoted service path vulnerability in McAfee Endpoint Product Removal (EPR) Tool prior to 21.2 allows local administrators to execute arbitrary code, with higher-level privileges, via execution from a compromised folder. The tool did not enforce and protect the execution path. Local admin privileges are required to place the files in the required location.

POC

Reference

Github

No PoCs found on GitHub currently.