CVE-2020-7273: McAfee Endpoint Security
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
Accessing functionality not properly constrained by ACLs vulnerability in the autorun start-up protection in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update allows local users to delete or rename programs in the autorun key via manipulation of some parameters.
Affected products
- McAfee Endpoint Security: version 10.5.0 only; version 10.5.1 only; version 10.5.2 only; version 10.5.3 only; version 10.5.4 only; version 10.5.5 only; …
Published 2020-04-15. Last modified 2026-06-17.