« Volver al listado

CVE-2017-4028

Estado: ModificadaMedia (4.4)—

Maliciously misconfigured registry vulnerability in all Microsoft Windows products in McAfee consumer and corporate products allows an administrator to inject arbitrary code into a debugged McAfee process via manipulation of registry parameters.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (6)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2017-4028",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 2.1,
          "accessVector": "LOCAL",
          "vectorString": "AV:L/AC:L/Au:N/C:N/I:P/A:N",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "LOW",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 3.9,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV30": [
      {
        "type": "Secondary",
        "source": "trellixpsirt@trellix.com",
        "cvssData": {
          "scope": "CHANGED",
          "version": "3.0",
          "baseScore": 5,
          "attackVector": "LOCAL",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:C/C:N/I:H/A:N",
          "integrityImpact": "HIGH",
          "userInteraction": "REQUIRED",
          "attackComplexity": "HIGH",
          "availabilityImpact": "NONE",
          "privilegesRequired": "HIGH",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 4,
        "exploitabilityScore": 0.6
      },
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.0",
          "baseScore": 4.4,
          "attackVector": "LOCAL",
          "baseSeverity": "MEDIUM",
          "vectorString": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "NONE",
          "privilegesRequired": "HIGH",
          "confidentialityImpact": "NONE"
        },
        "impactScore": 3.6,
        "exploitabilityScore": 0.8
      }
    ]
  },
  "affected": [
    {
      "source": "trellixpsirt@trellix.com",
      "affectedData": [
        {
          "vendor": "McAfee",
          "product": "McAfee Anti-Virus Plus (AVP)",
          "versions": [
            {
              "status": "affected",
              "version": "170329",
              "lessThan": "29 Mar 2017",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "McAfee",
          "product": "McAfee Endpoint Security (ENS)",
          "versions": [
            {
              "status": "affected",
              "version": "10.2",
              "lessThan": "10.2 DAT V3 DAT 2932.0",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "McAfee",
          "product": "McAfee Host Intrusion Prevention (Host IPS)",
          "versions": [
            {
              "status": "affected",
              "version": "8.0",
              "lessThan": "8.0 Patch 9 Hotfix 1188590",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "McAfee",
          "product": "McAfee Internet Security (MIS)",
          "versions": [
            {
              "status": "affected",
              "version": "170329",
              "lessThan": "29 Mar 2017",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "McAfee",
          "product": "McAfee Total Protection (MTP)",
          "versions": [
            {
              "status": "affected",
              "version": "170329",
              "lessThan": "29 Mar 2017",
              "versionType": "custom"
            }
          ]
        },
        {
          "vendor": "McAfee",
          "product": "McAfee Virus Scan Enterprise (VSE)",
          "versions": [
            {
              "status": "affected",
              "version": "8.8",
              "lessThan": "8.8 Patch 8/9 Hotfix 1187884",
              "versionType": "custom"
            }
          ]
        }
      ]
    }
  ],
  "published": "2018-04-03T22:29:00.523",
  "references": [
    {
      "url": "http://www.securityfocus.com/bid/97958",
      "source": "trellixpsirt@trellix.com"
    },
    {
      "url": "https://kc.mcafee.com/corporate/index?page=content&id=SB10193",
      "source": "trellixpsirt@trellix.com"
    },
    {
      "url": "http://www.securityfocus.com/bid/97958",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://kc.mcafee.com/corporate/index?page=content&id=SB10193",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-74"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Maliciously misconfigured registry vulnerability in all Microsoft Windows products in McAfee consumer and corporate products allows an administrator to inject arbitrary code into a debugged McAfee process via manipulation of registry parameters."
    },
    {
      "lang": "es",
      "value": "Vulnerabilidad de registro maliciosamente configurado en todos los productos Microsoft Windows en productos para consumidores y empresas de McAfee permite que un administrador inyecte código arbitrario en un proceso McAffee depurado mediante la manipulación de parámetros de registro."
    }
  ],
  "lastModified": "2026-06-17T01:19:14.497",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:mcafee:anti-virus_plus:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2F3320DA-317A-4668-8CB7-B253CF4E26BB"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:endpoint_security:10.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "FDA3764B-02A5-4CB8-A2CF-BDEC69A3F1F4"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:host_intrusion_prevention:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0B258695-3C79-4EF0-9F57-96867BBCE2B9",
              "versionEndIncluding": "8.0"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:host_intrusion_prevention:8.0:patch_1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "551CDFD4-6CB5-478C-87BD-E8FCA2564452"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:host_intrusion_prevention:8.0:patch_2:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3C8C36BD-4C81-43A2-A1B0-FD6FC43D7077"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:host_intrusion_prevention:8.0:patch_3:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7507AF42-7435-408F-8D13-12AEB6BD2D88"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:host_intrusion_prevention:8.0:patch_4:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "0DF5032E-F91D-48D8-AAEE-35784BD87778"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:host_intrusion_prevention:8.0:patch_5:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "22BBD8D0-3D09-4A0C-AF5F-5655329D01E3"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:host_intrusion_prevention:8.0:patch_6:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "143B1FC1-CD35-411F-B67F-4879DCE4531F"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:host_intrusion_prevention:8.0:patch_7:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "31C16E08-FFB3-426E-9A9F-D496A50F10BB"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:host_intrusion_prevention:8.0:patch_8:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E096860A-4AA2-4A3F-8B45-998E6E48F175"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:host_intrusion_prevention:8.0:patch_9:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "91D6F788-8D23-44D8-AFAF-780F45885341"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:internet_security:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7B53E987-4329-4FA9-AC94-0286D64B7E88"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:total_protection:-:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "251D56EC-7153-451F-A558-92E0F5BFACEE"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:virus_scan_enterprise:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "5EF52F97-EC0A-4CE9-A62B-4881210CA186",
              "versionEndIncluding": "8.8"
            },
            {
              "criteria": "cpe:2.3:a:mcafee:virus_scan_enterprise:8.8:patch_9:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6E4B5233-94A6-4E3E-B13B-08C6633BDCF7"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "A2572D17-1DE6-457B-99CC-64AFD54487EA"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "trellixpsirt@trellix.com"
}