Vulnerabilities
Vulnerable Software
Trellix:  Security Vulnerabilities
An uncontrolled search path vulnerability exists in Trellix Agent (TA) for Windows in versions prior to 5.7.8. This allows an attacker with admin access, which is required to place the DLL in the restricted Windows System folder, to elevate their privileges to System by placing a malicious DLL there.
CVSS Score
6.7
EPSS Score
0.002
Published
2022-11-30
XML External Entity (XXE) vulnerability in Trellix IPS Manager prior to 10.1 M8 allows a remote authenticated administrator to perform XXE attack in the administrator interface part of the interface, which allows a saved XML configuration file to be imported.
CVSS Score
5.9
EPSS Score
0.005
Published
2022-11-04


Contact Us

Shodan ® - All rights reserved