CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.2. It is listed in CISA's Known Exploited Vulnerabilities catalog, indicating confirmed active exploitation in the wild.
CISA KEV Details
Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.
Ransomware use: Unknown
Added to KEV: 2021-11-03
Required action: Apply updates per vendor instructions.
CVE
CVE-2021-23874
Severity
HIGH
CVSS
8.2
EPSS
1.03%
Original NVD Description
Arbitrary Process Execution vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevated privileges and execute arbitrary code bypassing MTP self-defense.
Related CVEs
Other vulnerabilities affecting the same vendor(s)