CVE-2023-0400

The protection bypass vulnerability in DLP for Windows 11.9.x is addressed in version 11.10.0. This allowed a local user to bypass DLP controls when uploading sensitive data from a mapped drive into a web email client. Loading from a local driver was correctly prevented. Versions prior to 11.9 correctly detected and blocked the attempted upload of sensitive data.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:trellix:data_loss_prevention:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

07 Nov 2023, 04:00

Type Values Removed Values Added
Summary The protection bypass vulnerability in DLP for Windows 11.9.x is addressed in version 11.10.0. This allowed a local user to bypass DLP controls when uploading sensitive data from a mapped drive into a web email client. Loading from a local driver was correctly prevented. Versions prior to 11.9 correctly detected and blocked the attempted upload of sensitive data. The protection bypass vulnerability in DLP for Windows 11.9.x is addressed in version 11.10.0. This allowed a local user to bypass DLP controls when uploading sensitive data from a mapped drive into a web email client. Loading from a local driver was correctly prevented. Versions prior to 11.9 correctly detected and blocked the attempted upload of sensitive data.

13 Feb 2023, 14:26

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.2
First Time Microsoft windows
Microsoft
Trellix
Trellix data Loss Prevention
References (MISC) https://kcm.trellix.com/corporate/index?page=content&id=SB10394&locale=en_US - (MISC) https://kcm.trellix.com/corporate/index?page=content&id=SB10394&locale=en_US - Mitigation, Vendor Advisory
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:trellix:data_loss_prevention:*:*:*:*:*:*:*:*
CWE CWE-427

02 Feb 2023, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-02-02 09:15

Updated : 2023-12-10 14:48


NVD link : CVE-2023-0400

Mitre link : CVE-2023-0400

CVE.ORG link : CVE-2023-0400


JSON object : View

Products Affected

trellix

  • data_loss_prevention

microsoft

  • windows
CWE
CWE-427

Uncontrolled Search Path Element

CWE-670

Always-Incorrect Control Flow Implementation