CVE-2016-3984
The McAfee VirusScan Console (mcconsol.exe) in McAfee Active Response (MAR) before 1.1.0.161, Agent (MA) 5.x before 5.0.2 Hotfix 1110392 (5.0.2.333), Data Exchange Layer 2.x (DXL) before 2.0.1.140.1, Data Loss Prevention Endpoint (DLPe) 9.3 before Patch 6 and 9.4 before Patch 1 HF3, Device Control (MDC) 9.3 before Patch 6 and 9.4 before Patch 1 HF3, Endpoint Security (ENS) 10.x before 10.1, Host Intrusion Prevention Service (IPS) 8.0 before 8.0.0.3624, and VirusScan Enterprise (VSE) 8.8 before P7 (8.8.0.1528) on Windows allows local administrators to bypass intended self-protection rules and disable the antivirus engine by modifying registry keys.
Published:Apr 8, 2016
Last Modified:Apr 12, 2025
EPS:Apr 8, 2016
EPSS Score:0.0029
CVSS Score:5.1
Affected Products
Vendor
Product
Action
Vendor
Mcafee
Product
Active Response
Mcafee
Active Response
Vendor
Mcafee
Product
Agent
Mcafee
Agent
Vendor
Mcafee
Product
Data Exchange Layer
Mcafee
Data Exchange Layer
Vendor
Mcafee
Product
Data Loss Prevention Endpoint
Mcafee
Data Loss Prevention Endpoint
Vendor
Mcafee
Product
Endpoint Security
Mcafee
Endpoint Security
Vendor
Mcafee
Product
Host Intrusion Prevention
Mcafee
Host Intrusion Prevention
Vendor
Mcafee
Product
Virusscan Enterprise
Mcafee
Virusscan Enterprise
Exploits
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
