Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-4326


Improper preservation of permissions vulnerability in Trellix Endpoint Agent (xAgent) prior to V35.31.22 on Windows allows a local user with administrator privileges to bypass the product protection to uninstall the agent via incorrectly applied permissions in the removal protection functionality.


Published

2022-12-16T16:15:25.220

Last Modified

2024-11-21T07:35:03.630

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-281
  • Type: Primary
    CWE-281

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application trellix endpoint_security < 35.31.22 Yes
Operating System microsoft windows - No

References