CVE-2024-5671
CRITICALTrellix IPS Manager - RCE
Title source: llmDescription
Insecure Deserialization in some workflows of the IPS Manager allows unauthenticated remote attackers to perform arbitrary code execution and access to the vulnerable Trellix IPS Manager.
Scores
CVSS v3
9.8
EPSS
0.0567
EPSS Percentile
90.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-502
Status
draft
Timeline
Published
Jun 14, 2024
Tracked Since
Feb 18, 2026