#VU51964 Insecure DLL loading in Cisco AMP for Endpoints - CVE-2021-1386
Published: April 7, 2021 / Updated: May 3, 2021
Cisco AMP for Endpoints
Cisco Systems, Inc
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to the application loads DLL libraries in an insecure manner. A local user can place a malicious .dll file in certain location on the system and execute arbitrary code with SYSTEM privileges.
Note, the vulnerability affects Windows installations only.