Aller au contenu

Fiche vulnérabilité

CVE-2023-3313 : faille élevée trellix enterprise security manager (CVSS 7.8)

Description

An OS common injection vulnerability exists in the ESM certificate API, whereby incorrectly neutralized special elements may have allowed an unauthorized user to execute system command injection for the purpose of privilege escalation or to execute arbitrary commands.

En bref

Sévérité
Élevée (CVSS 7.8)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
3 juil. 2023
Dernière mise à jour
17 juin 2026

Produits concernés

  • trellix enterprise security manager

Références

Rechercher une autre vulnérabilité dans la base CVE