VYPR

Endpoint Security

by Trellix

CVEs (3)

  • CVE-2025-14963HigFeb 24, 2026
    risk 0.51cvss 7.8epss 0.00

    A vulnerability identified in the HX Agent driver file fekern.sys allowed a threat actor with local user access the ability to gain elevated system privileges. Utilization of a Bring Your Own Vulnerable Driver (BYOVD) was leveraged to gain access to the critical Windows process…

  • CVE-2023-3665MedOct 4, 2023
    risk 0.36cvss 5.5epss 0.00

    A code injection vulnerability in Trellix ENS 10.7.0 April 2023 release and earlier, allowed a local user to disable the ENS AMSI component via environment variables, leading to denial of service and or the execution of arbitrary code.

  • CVE-2022-4326MedDec 16, 2022
    risk 0.36cvss 5.5epss 0.00

    Improper preservation of permissions vulnerability in Trellix Endpoint Agent (xAgent) prior to V35.31.22 on Windows allows a local user with administrator privileges to bypass the product protection to uninstall the agent via incorrectly applied permissions in the removal…