This script is Copyright (C) 2016 Tenable Network Security, Inc.
The antivirus application installed on the remote Windows host is
affected by a security mechanism bypass vulnerability.
The version of McAfee VirusScan Enterprise (VSE) installed on the
remote Windows host is 8.8 Patch 6 or Patch 7 without Hotfix 1123565.
It is, therefore, affected by a flaw related to closing registry
handles for the McAfee VirusScan Console process. A local attacker
with Windows administrative privileges can exploit this flaw to bypass
password protection and thereby unlock the VirusScan Console window,
resulting in access to resources protected by VSE.
See also :
Upgrade to McAfee VirusScan Enterprise version 8.8 Patch 6/7 Hotfix
Risk factor :
Low / CVSS Base Score : 3.3
Public Exploit Available : true