Impact
An attacker who can target a Trellix HX Console running version 10.0.0 or an earlier release can craft detection payloads that trigger the console to decompress a very large file. The decompression consumes excessive CPU and memory, exhausting system resources and causing the console to become unresponsive. The weakness is a resource switch, classified by CWE‑409, and does not directly affect confidentiality or data integrity.
Affected Systems
The affected product is the Trellix HX Console, specifically versions 10.0.0 and all prior releases. Any deployment of this console that has not applied a patched version remains vulnerable.
Risk and Exploitability
The CVSS score of 6.0 shows moderate severity, while the EPSS score of < 1 % indicates a very low likelihood of exploitation at present. The vulnerability is not listed in the CISA KEV catalog. Exploitation requires the attacker to gain access to the console and submit the crafted payload; the attack vector is inferred to be a local or privileged remote intrusion rather than a pure remote web exploit. Successful exploitation would render the console unavailable, disrupting security operations.
OpenCVE Enrichment