McAfee Application Control and Change Control 5.1.x and 6.0.0 do not enforce an intended password requirement in certain situations involving attributes of the password file, which allows local users to bypass authentication by executing a command.
                
            References
                    | Link | Resource | 
|---|---|
| https://kc.mcafee.com/corporate/index?page=content&id=SB10023 | Vendor Advisory | 
| https://kc.mcafee.com/corporate/index?page=content&id=SB10023 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2012-08-22 10:42
Updated : 2025-04-11 00:51
NVD link : CVE-2012-4593
Mitre link : CVE-2012-4593
CVE.ORG link : CVE-2012-4593
JSON object : View
Products Affected
                mcafee
- application_control
- change_control
CWE
                
                    
                        
                        CWE-264
                        
            Permissions, Privileges, and Access Controls
