CISA Known Exploited Vulnerability

CVE-2021-23874

McAfee · McAfee Total Protection (MTP)

McAfee Total Protection (MTP) Improper Privilege Management Vulnerability

Date added
BOD 22-01 due date
CWE CWE-284
Ransomware Unknown

CISA description

McAfee Total Protection (MTP) contains an improper privilege management vulnerability that allows a local user to gain elevated privileges and execute code, bypassing MTP self-defense.

Required action

Apply updates per vendor instructions.