Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2024-5957

Disclosure Date: September 05, 2024 (last updated September 07, 2024)
This vulnerability allows unauthenticated remote attackers to bypass authentication and gain APIs access of the Manager.
Attacker Value
Unknown

CVE-2024-5956

Disclosure Date: September 05, 2024 (last updated September 07, 2024)
This vulnerability allows unauthenticated remote attackers to bypass authentication and gain partial data access to the vulnerable Trellix IPS Manager with garbage data in response mostly
Attacker Value
Unknown

CVE-2024-5731

Disclosure Date: June 14, 2024 (last updated June 15, 2024)
A vulnerability in the IPS Manager, Central Manager, and Local Manager communication workflow allows an attacker to control the destination of a request by manipulating the parameter, thereby leveraging sensitive information.
0
Attacker Value
Unknown

CVE-2024-5671

Disclosure Date: June 14, 2024 (last updated June 15, 2024)
Insecure Deserialization in some workflows of the IPS Manager allows unauthenticated remote attackers to perform arbitrary code execution and access to the vulnerable Trellix IPS Manager.
0
Attacker Value
Unknown

CVE-2022-3340

Disclosure Date: November 04, 2022 (last updated December 22, 2024)
XML External Entity (XXE) vulnerability in Trellix IPS Manager prior to 10.1 M8 allows a remote authenticated administrator to perform XXE attack in the administrator interface part of the interface, which allows a saved XML configuration file to be imported.
Attacker Value
Unknown

CVE-2017-3842

Disclosure Date: February 22, 2017 (last updated November 26, 2024)
A vulnerability in the web-based management interface of the Cisco Intrusion Prevention System Device Manager (IDM) could allow an unauthenticated, remote attacker to view sensitive information stored in certain HTML comments. More Information: CSCuh91455. Known Affected Releases: 7.2(1)V7.
0