CVE-2024-5671

CRITICAL

Trellix IPS Manager - RCE

Title source: llm

Description

Insecure Deserialization in some workflows of the IPS Manager allows unauthenticated remote attackers to perform arbitrary code execution and access to the vulnerable Trellix IPS Manager.

Scores

CVSS v3 9.8
EPSS 0.0567
EPSS Percentile 90.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-502
Status draft

Timeline

Published Jun 14, 2024
Tracked Since Feb 18, 2026