Improper input validation in McAfee products - CVE-2018-6690
Published: December 11, 2018 / Updated: December 12, 2018
Vulnerability details
The vulnerability allows a local attacker to bypass security restrictions on the target system.
The vulnerability exists due to improper access control. The executable files from a hard drive solidified by MACC (McAfee Application and Change Control) can be executed on the system that did not generate the inventory.
Affected software
SINAMICS PERFECT HARMONY GH180 Drives MLFB 6SR52
SINAMICS PERFECT HARMONY GH180 Drives MLFB 6SR42
SINAMICS PERFECT HARMONY GH180 Drives MLFB 6SR32