Trellix records
34 published records for vendor trellix.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 2.9%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')3
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-281 Improper Preservation of Permissions2
- CWE-59 Improper Link Resolution Before File Access ('Link Following')2
- CWE-305 Authentication Bypass by Primary Weakness2
The weakness classes this vendor ships most often: where to look.
CWEBug bounty scope
The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.
All records
34 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2024-11482No exploit | A vulnerability in ESM 11.6.10 allows unauthenticated access to the internal Snowservice API and enables remote code execution through commatrellix · enterprise security manager · CWE-78 | Critical9.8 | — | 2.5% | Nov 29, 2024 |
39Monitor | CVE-2024-5671No exploit | Insecure Deserialization in some workflows of the IPS Manager allows unauthenticated remote attackers to perform arbitrary code execution antrellix · intrusion prevention system (ips) manager · CWE-502 | Critical9.8 | — | 0.9% | Jun 14, 2024 |
35Monitor | CVE-2023-3314No exploit | A vulnerability arises out of a failure to comprehensively sanitize the processing of a zip file(s).trellix · enterprise security manager · CWE-78 | High8.8 | — | 0.9% | Jul 3, 2023 |
32Monitor | CVE-2023-1388No exploit | A heap-based overflow vulnerability in TA prior to version 5.7.9 allows a remote user to alter the page heap in the macmnsvc process memorytrellix · agent · CWE-787 | High8.1 | — | 0.6% | Jun 7, 2023 |
32Monitor | CVE-2024-11481No exploit | A vulnerability in ESM 11.6.10 allows unauthenticated access to the internal Snowservice API.trellix · enterprise security manager · CWE-22 | High8.2 | — | 0.4% | Nov 29, 2024 |
32Monitor | CVE-2023-0400Proof of concept | The protection bypass vulnerability in DLP for Windows 11.9.x is addressed in version 11.10.0.trellix · data loss prevention · CWE-670 | High8.2 | — | 0.4% | Feb 2, 2023 |
31Monitor | CVE-2023-0976No exploit | A command Injection Vulnerability in TA for mac-OS prior to version 5.7.9 allows local users to place an arbitrary file into the /Library/Ttrellix · agent · CWE-427 | High7.8 | — | 0.6% | Jun 7, 2023 |
31Monitor | CVE-2023-3313No exploit | An OS common injection vulnerability exists in the ESM certificate API, whereby incorrectly neutralized special elements may have allowed atrellix · enterprise security manager · CWE-78 | High7.8 | — | 0.5% | Jul 3, 2023 |
31Monitor | CVE-2023-3438No exploit | An unquoted Windows search path vulnerability existed in the install the MOVE 4.10.x and earlier Windows install service (mvagtsce.exe).trellix · move · CWE-428 | High7.8 | — | 0.2% | Jul 3, 2023 |
31Monitor | CVE-2023-3665No exploit | A code injection vulnerability in Trellix ENS 10.7.0 April 2023 release and earlier, allowed a local user to disable the ENS AMSI componenttrellix · endpoint security · CWE-74 | High7.8 | — | 0.2% | Oct 4, 2023 |
31Monitor | CVE-2023-6119No exploit | An Improper Privilege Management vulnerability in Trellix GetSusp prior to version 5.0.0.27 allows a local, low privilege attacker to gain trellix · getsusp · CWE-269 | High7.8 | — | 0.2% | Nov 16, 2023 |
31Monitor | CVE-2024-0206No exploit | A symbolic link manipulation vulnerability in Trellix Anti-Malware Engine prior to the January 2024 release allows an authenticated local utrellix · anti-malware engine · CWE-59 | High7.8 | — | 0.2% | Jan 9, 2024 |
31Monitor | CVE-2024-0213No exploit | A buffer overflow vulnerability in TA for Linux and TA for MacOS prior to 5.8.1 allows a local user to gain elevated permissions, or cause trellix · agent · CWE-120 | High7.8 | — | 0.2% | Jan 9, 2024 |
31Monitor | CVE-2023-0975No exploit | A vulnerability exists in Trellix Agent for Windows version 5.7.8 and earlier, that allows local users, during install/upgrade workflow, totrellix · agent · CWE-281 | High7.8 | — | 0.2% | Apr 3, 2023 |
30Monitor | CVE-2024-5957No exploit | This vulnerability allows unauthenticated remote attackers to bypass authentication and gain APIs access of the Manager.trellix · intrusion prevention system manager · CWE-305 | High7.5 | — | 0.4% | Sep 5, 2024 |
30Monitor | CVE-2024-4844No exploit | Hardcoded credentials vulnerability in Trellix ePolicy Orchestrator (ePO) on Premise prior to 5.10 Service Pack 1 Update 2 allows an attacketrellix · epolicy orchestrator · CWE-798 | High7.5 | — | 0.2% | May 16, 2024 |
28Monitor | CVE-2023-5607No exploit | An improper limitation of a path name to a restricted directory (path traversal) vulnerability in the TACC ePO extension, for on-premises etrellix · application and change control · CWE-22 | High7.2 | — | 0.9% | Nov 27, 2023 |
28Monitor | CVE-2023-6071No exploit | An Improper Neutralization of Special Elements used in a command vulnerability in ESM prior to version 11.6.9 allows a remote administratortrellix · enterprise security manager · CWE-77 | High7.2 | — | 0.9% | Nov 30, 2023 |
28Monitor | CVE-2022-3340No exploit | Trellix IPS Manager vulnerable to XXEtrellix · intrusion prevention system manager · CWE-611 | High7.2 | — | 0.6% | Nov 4, 2022 |
28Monitor | CVE-2025-3771No exploit | A path or symbolic link manipulation vulnerability in SIR 1.0.3 and prior versions allows an authenticated non-admin local user to overwritetrellix · system information reporter · CWE-59 | High7.2 | — | 0.2% | Jun 26, 2025 |
28Monitor | CVE-2023-4814No exploit | A Privilege escalation vulnerability exists in Trellix Windows DLP endpoint for windows which can be abused to delete any file/folder for wtrellix · data loss prevention · CWE-250 | High7.1 | — | 0.2% | Sep 14, 2023 |
26Monitor | CVE-2023-0977No exploit | A heap-based overflow vulnerability in Trellix Agent (Windows and Linux) version 5.7.8 and earlier, allows a remote user to alter the page trellix · agent · CWE-120 | Medium6.5 | — | 0.6% | Apr 3, 2023 |
26Monitor | CVE-2023-0978No exploit | A command injection vulnerability in Trellix Intelligent Sandbox CLI for version 5.2 and earlier, allows a local user to inject and executetrellix · intelligent sandbox · CWE-77 | Medium6.7 | — | 0.4% | Mar 13, 2023 |
26Monitor | CVE-2022-3859No exploit | An uncontrolled search path vulnerability exists in Trellix Agent (TA) for Windows in versions prior to 5.7.8.trellix · agent · CWE-427 | Medium6.7 | — | 0.2% | Nov 30, 2022 |
25Monitor | CVE-2023-0214Proof of concept | XSS in Skyhigh Security SWGtrellix · skyhigh secure web gateway · CWE-79 | Medium6.1 | — | 1.9% | Jan 18, 2023 |
- CVE-2024-1148240Plan
A vulnerability in ESM 11.6.10 allows unauthenticated access to the internal Snowservice API and enables remote code execution through comma
CriticalCVSS 9.8No exploitEPSS 3%trellix · enterprise security managerNov 29, 2024
- CVE-2024-567139Monitor
Insecure Deserialization in some workflows of the IPS Manager allows unauthenticated remote attackers to perform arbitrary code execution an
CriticalCVSS 9.8No exploitEPSS 1%trellix · intrusion prevention system (ips) managerJun 14, 2024
- CVE-2023-331435Monitor
A vulnerability arises out of a failure to comprehensively sanitize the processing of a zip file(s).
HighCVSS 8.8No exploitEPSS 1%trellix · enterprise security managerJul 3, 2023
- CVE-2023-138832Monitor
A heap-based overflow vulnerability in TA prior to version 5.7.9 allows a remote user to alter the page heap in the macmnsvc process memory
HighCVSS 8.1No exploitEPSS 1%trellix · agentJun 7, 2023
- CVE-2024-1148132Monitor
A vulnerability in ESM 11.6.10 allows unauthenticated access to the internal Snowservice API.
HighCVSS 8.2No exploitEPSS 0%trellix · enterprise security managerNov 29, 2024
- CVE-2023-040032Monitor
The protection bypass vulnerability in DLP for Windows 11.9.x is addressed in version 11.10.0.
HighCVSS 8.2Proof of conceptEPSS 0%trellix · data loss preventionFeb 2, 2023
- CVE-2023-097631Monitor
A command Injection Vulnerability in TA for mac-OS prior to version 5.7.9 allows local users to place an arbitrary file into the /Library/T
HighCVSS 7.8No exploitEPSS 1%trellix · agentJun 7, 2023
- CVE-2023-331331Monitor
An OS common injection vulnerability exists in the ESM certificate API, whereby incorrectly neutralized special elements may have allowed a
HighCVSS 7.8No exploitEPSS 0%trellix · enterprise security managerJul 3, 2023
- CVE-2023-343831Monitor
An unquoted Windows search path vulnerability existed in the install the MOVE 4.10.x and earlier Windows install service (mvagtsce.exe).
HighCVSS 7.8No exploitEPSS 0%trellix · moveJul 3, 2023
- CVE-2023-366531Monitor
A code injection vulnerability in Trellix ENS 10.7.0 April 2023 release and earlier, allowed a local user to disable the ENS AMSI component
HighCVSS 7.8No exploitEPSS 0%trellix · endpoint securityOct 4, 2023
- CVE-2023-611931Monitor
An Improper Privilege Management vulnerability in Trellix GetSusp prior to version 5.0.0.27 allows a local, low privilege attacker to gain
HighCVSS 7.8No exploitEPSS 0%trellix · getsuspNov 16, 2023
- CVE-2024-020631Monitor
A symbolic link manipulation vulnerability in Trellix Anti-Malware Engine prior to the January 2024 release allows an authenticated local u
HighCVSS 7.8No exploitEPSS 0%trellix · anti-malware engineJan 9, 2024
- CVE-2024-021331Monitor
A buffer overflow vulnerability in TA for Linux and TA for MacOS prior to 5.8.1 allows a local user to gain elevated permissions, or cause
HighCVSS 7.8No exploitEPSS 0%trellix · agentJan 9, 2024
- CVE-2023-097531Monitor
A vulnerability exists in Trellix Agent for Windows version 5.7.8 and earlier, that allows local users, during install/upgrade workflow, to
HighCVSS 7.8No exploitEPSS 0%trellix · agentApr 3, 2023
- CVE-2024-595730Monitor
This vulnerability allows unauthenticated remote attackers to bypass authentication and gain APIs access of the Manager.
HighCVSS 7.5No exploitEPSS 0%trellix · intrusion prevention system managerSep 5, 2024
- CVE-2024-484430Monitor
Hardcoded credentials vulnerability in Trellix ePolicy Orchestrator (ePO) on Premise prior to 5.10 Service Pack 1 Update 2 allows an attacke
HighCVSS 7.5No exploitEPSS 0%trellix · epolicy orchestratorMay 16, 2024
- CVE-2023-560728Monitor
An improper limitation of a path name to a restricted directory (path traversal) vulnerability in the TACC ePO extension, for on-premises e
HighCVSS 7.2No exploitEPSS 1%trellix · application and change controlNov 27, 2023
- CVE-2023-607128Monitor
An Improper Neutralization of Special Elements used in a command vulnerability in ESM prior to version 11.6.9 allows a remote administrator
HighCVSS 7.2No exploitEPSS 1%trellix · enterprise security managerNov 30, 2023
- CVE-2022-334028Monitor
Trellix IPS Manager vulnerable to XXE
HighCVSS 7.2No exploitEPSS 1%trellix · intrusion prevention system managerNov 4, 2022
- CVE-2025-377128Monitor
A path or symbolic link manipulation vulnerability in SIR 1.0.3 and prior versions allows an authenticated non-admin local user to overwrite
HighCVSS 7.2No exploitEPSS 0%trellix · system information reporterJun 26, 2025
- CVE-2023-481428Monitor
A Privilege escalation vulnerability exists in Trellix Windows DLP endpoint for windows which can be abused to delete any file/folder for w
HighCVSS 7.1No exploitEPSS 0%trellix · data loss preventionSep 14, 2023
- CVE-2023-097726Monitor
A heap-based overflow vulnerability in Trellix Agent (Windows and Linux) version 5.7.8 and earlier, allows a remote user to alter the page
MediumCVSS 6.5No exploitEPSS 1%trellix · agentApr 3, 2023
- CVE-2023-097826Monitor
A command injection vulnerability in Trellix Intelligent Sandbox CLI for version 5.2 and earlier, allows a local user to inject and execute
MediumCVSS 6.7No exploitEPSS 0%trellix · intelligent sandboxMar 13, 2023
- CVE-2022-385926Monitor
An uncontrolled search path vulnerability exists in Trellix Agent (TA) for Windows in versions prior to 5.7.8.
MediumCVSS 6.7No exploitEPSS 0%trellix · agentNov 30, 2022
- CVE-2023-021425Monitor
XSS in Skyhigh Security SWG
MediumCVSS 6.1Proof of conceptEPSS 2%trellix · skyhigh secure web gatewayJan 18, 2023