Vulnerabilities (CVE)

Filtered by vendor Trellix Subscribe
Filtered by product Endpoint Security
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-3665 1 Trellix 1 Endpoint Security 2023-12-10 N/A 7.8 HIGH
A code injection vulnerability in Trellix ENS 10.7.0 April 2023 release and earlier, allowed a local user to disable the ENS AMSI component via environment variables, leading to denial of service and or the execution of arbitrary code.
CVE-2022-4326 2 Microsoft, Trellix 2 Windows, Endpoint Security 2023-12-10 N/A 6.0 MEDIUM
Improper preservation of permissions vulnerability in Trellix Endpoint Agent (xAgent) prior to V35.31.22 on Windows allows a local user with administrator privileges to bypass the product protection to uninstall the agent via incorrectly applied permissions in the removal protection functionality.