McAfee Application Control 6.x < / 7.0.x < Unauthorized IOCTL Use Local Privilege Escalation (SB10175)

High Nessus Plugin ID 95924


The remote host has a security application installed that is affected by a local privilege escalation vulnerability.


The version of McAfee Application Control (MAC) installed on the remote Windows host is 6.x prior to 6.2.0 build 567 or 7.0.x prior to 7.0.1 build 275. It is, therefore, affected by a local privilege escalation vulnerability due to the unauthorized use of IOCTL. A local attacker can exploit this to gain elevated privileges.


Upgrade to McAfee Application Control version / or later as referenced in the vendor advisory.

See Also

Plugin Details

Severity: High

ID: 95924

File Name: mcafee_app_ctl_7_0_1_275.nasl

Version: $Revision: 1.2 $

Type: local

Agent: windows

Family: Windows

Published: 2016/12/16

Modified: 2016/12/20

Dependencies: 87923

Risk Information

Risk Factor: High


Base Score: 7.2

Temporal Score: 5.3

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:U/RL:OF/RC:C


Base Score: 7.8

Temporal Score: 6.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:mcafee:application_control

Required KB Items: installed_sw/McAfee Application Control

Exploit Available: false

Exploit Ease: No known exploits are available

Patch Publication Date: 2015/10/14

Vulnerability Publication Date: 2016/11/22

Reference Information

CVE: CVE-2016-8009

OSVDB: 148314