Security Advisory

CVE-2023-0976

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-06-07 07:35:57
Last updated 2025-01-06 21:05:23
Assigner trellix
State PUBLISHED

Description

A command Injection Vulnerability in TA for mac-OS prior to version 5.7.9 allows local users to place an arbitrary file into the /Library/Trellix/Agent/bin/ folder. The malicious file is executed by running the TA deployment feature located in the System Tree.