CVE-2023-0221: McAfee Application And Change Control

Medium severity, CVSS 4.4. EPSS: 0.2% chance of exploitation in the next 30 days.

Product security bypass vulnerability in ACC prior to version 8.3.4 allows a locally logged-in attacker with administrator privileges to bypass the execution controls provided by ACC using the utilman program.

Affected products

  • McAfee Application And Change Control: before 8.3.4 (fixed in 8.3.4)

Published 2023-01-13. Last modified 2026-06-17.