CVE-2023-0976: Command Injection
Published Jun 7, 2023
·Updated
A command Injection Vulnerability in TA for mac-OS prior to version 5.7.9 allows local users to place an arbitrary file into the /Library/Trellix/Agent/bin/ folder. The malicious file is executed by running the TA deployment feature located in the System Tree.
Affected Software
2 affected components
Trellix Agent<5.7.9
macOS
Event History
Jun 7, 2023
CVE Published
via MITRE·07:35 AM
Data Sourced
via MITRE·07:35 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this command Injection Vulnerability?
The vulnerability ID for this command Injection Vulnerability is CVE-2023-0976.
2
What is the affected software for this vulnerability?
The affected software for this vulnerability is Trellix Agent for mac-OS prior to version 5.7.9.
3
What is the severity of CVE-2023-0976?
The severity of CVE-2023-0976 is high with a CVSS score of 7.8.
4
How does this vulnerability allow local users to place an arbitrary file?
This vulnerability in TA for mac-OS prior to version 5.7.9 allows local users to place an arbitrary file into the /Library/Trellix/Agent/bin/ folder.
5
How can this vulnerability be fixed?
To fix this vulnerability, update TA for mac-OS to version 5.7.9 or later.