CVE-2022-4326

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
16/12/2022
Last modified:
07/11/2023

Description

Improper preservation of permissions vulnerability in Trellix Endpoint Agent (xAgent) prior to V35.31.22 on Windows allows a local user with administrator privileges to bypass the product protection to uninstall the agent via incorrectly applied permissions in the removal protection functionality.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trellix:endpoint_security:*:*:*:*:*:*:*:* 35.31.22 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*