CVE-2024-5957: High severity trellix intrusion prevention system manager vulnerability
Published Sep 5, 2024
·Updated
This vulnerability allows unauthenticated remote attackers to bypass authentication and gain APIs access of the Manager.
Affected Software
1 affected component
Trellix Intrusion Prevention System Manager<11.1.7.97
Event History
Sep 5, 2024
CVE Published
via MITRE·10:49 AM
Data Sourced
via MITRE·10:49 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-5957?
CVE-2024-5957 is considered a critical vulnerability as it allows unauthenticated remote attackers to bypass authentication.
2
How do I fix CVE-2024-5957?
To fix CVE-2024-5957, update the Trellix Intrusion Prevention System Manager to version 11.1.7.97 or higher.
3
What are the potential impacts of CVE-2024-5957?
The potential impacts of CVE-2024-5957 include unauthorized access to APIs and the possibility of executing malicious actions on the system.
4
Is CVE-2024-5957 exploitable remotely?
Yes, CVE-2024-5957 can be exploited remotely by unauthenticated attackers.
5
What versions are affected by CVE-2024-5957?
Versions of Trellix Intrusion Prevention System Manager prior to 11.1.7.97 are affected by CVE-2024-5957.