Description
A vulnerability exists in Trellix Agent for Windows version 5.7.8 and earlier, that allows local users, during install/upgrade workflow, to replace one of the Agent’s executables before it can be executed. This allows the user to elevate their permissions.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-12960 | A vulnerability exists in Trellix Agent for Windows version 5.7.8 and earlier, that allows local users, during install/upgrade workflow, to replace one of the Agent’s executables before it can be executed. This allows the user to elevate their permissions. |
References
History
Tue, 11 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: trellix
Published:
Updated: 2025-02-11T15:51:57.354Z
Reserved: 2023-02-23T04:06:37.513Z
Link: CVE-2023-0975
Updated: 2024-08-02T05:32:46.110Z
Status : Modified
Published: 2023-04-03T16:15:07.443
Modified: 2024-11-21T07:38:13.000
Link: CVE-2023-0975
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD