The protection bypass vulnerability in DLP for Windows 11.9.x is addressed in version 11.10.0. This allowed a local user to bypass DLP controls when uploading sensitive data from a mapped drive into a web email client. Loading from a local driver was correctly prevented. Versions prior to 11.9 correctly detected and blocked the attempted upload of sensitive data.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: trellix

Published: 2023-02-01T16:34:09.911Z

Updated: 2024-08-02T05:10:55.927Z

Reserved: 2023-01-19T11:50:39.778Z

Link: CVE-2023-0400

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-02-02T09:15:08.503

Modified: 2023-11-07T04:00:23.977

Link: CVE-2023-0400

cve-icon Redhat

No data.