Description
A code injection vulnerability in Trellix ENS 10.7.0 April 2023 release and earlier, allowed a local user to disable the ENS AMSI component via environment variables,
leading to denial of service and or the execution of arbitrary code.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-44309 | A code injection vulnerability in Trellix ENS 10.7.0 April 2023 release and earlier, allowed a local user to disable the ENS AMSI component via environment variables, leading to denial of service and or the execution of arbitrary code. |
References
History
Thu, 19 Sep 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: trellix
Published:
Updated: 2024-09-19T15:17:05.688Z
Reserved: 2023-07-13T14:30:54.711Z
Link: CVE-2023-3665
Updated: 2024-08-02T07:01:57.407Z
Status : Modified
Published: 2023-10-04T15:15:12.360
Modified: 2024-11-21T08:17:47.523
Link: CVE-2023-3665
No data.
OpenCVE Enrichment
No data.
EUVD