Vulnerabilities > CVE-2023-4814 - Incorrect Authorization vulnerability in Trellix Data Loss Prevention 11.10.100.17

047910
CVSS 7.1 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
trellix
CWE-863

Summary

A Privilege escalation vulnerability exists in Trellix Windows DLP endpoint for windows which can be abused to delete any file/folder for which the user does not have permission to.

Vulnerable Configurations

Part Description Count
Application
Trellix
1

Common Weakness Enumeration (CWE)