### [CVE-2017-4028](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-4028) ![](https://img.shields.io/static/v1?label=Product&message=McAfee%20Anti-Virus%20Plus%20(AVP)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=McAfee%20Endpoint%20Security%20(ENS)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=McAfee%20Host%20Intrusion%20Prevention%20(Host%20IPS)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=McAfee%20Internet%20Security%20(MIS)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=McAfee%20Total%20Protection%20(MTP)&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=McAfee%20Virus%20Scan%20Enterprise%20(VSE)&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=10.2%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Version&message=170329%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Version&message=8.0%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Version&message=8.8%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Maliciously%20misconfigured%20registry%20vulnerability&color=brightgreen) ### Description Maliciously misconfigured registry vulnerability in all Microsoft Windows products in McAfee consumer and corporate products allows an administrator to inject arbitrary code into a debugged McAfee process via manipulation of registry parameters. ### POC #### Reference - https://kc.mcafee.com/corporate/index?page=content&id=SB10193 #### Github No PoCs found on GitHub currently.