CVE-2023-3313

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
03/07/2023
Last modified:
11/07/2023

Description

<br /> An OS common injection vulnerability exists in the ESM certificate API, whereby incorrectly neutralized special elements may have allowed an unauthorized user to execute system command injection for the purpose of privilege escalation or to execute arbitrary commands.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trellix:enterprise_security_manager:*:*:*:*:*:*:*:* 11.6.7 (excluding)


References to Advisories, Solutions, and Tools