VYPR

Endpoint Hx Agent (xagent)

by Trellix

CVEs (2)

  • CVE-2022-4326MedDec 16, 2022
    risk 0.36cvss 5.5epss 0.00

    Improper preservation of permissions vulnerability in Trellix Endpoint Agent (xAgent) prior to V35.31.22 on Windows allows a local user with administrator privileges to bypass the product protection to uninstall the agent via incorrectly applied permissions in the removal…

  • CVE-2025-14963Feb 24, 2026
    risk 0.00cvss epss 0.00

    A vulnerability identified in the HX Agent driver file fekern.sys allowed a threat actor with local user access the ability to gain elevated system privileges. Utilization of a Bring Your Own Vulnerable Driver (BYOVD) was leveraged to gain access to the critical Windows process…