Unrated severityNVD Advisory· Published Nov 4, 2022· Updated Apr 30, 2025
Trellix IPS Manager vulnerable to XXE
CVE-2022-3340
Description
XML External Entity (XXE) vulnerability in Trellix IPS Manager prior to 10.1 M8 allows a remote authenticated administrator to perform XXE attack in the administrator interface part of the interface, which allows a saved XML configuration file to be imported.
Affected products
2<10.1 M8+ 1 more
- (no CPE)range: <10.1 M8
- (no CPE)range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.