Trellix Intelligent Sandbox是美国火眼(Trellix)公司的能够使您的组织能够检测到高级、规避的恶意软件,并将威胁信息转化为即时行动和保护的平台。 Trellix Intelligent Sandbox CLI 5.2及之前版本存在命令注入漏洞,该漏洞源于对传递给特定 CLI 命令的参数的验证不充分,允许本地用户使用特制字符串注入和执行任意操作系统命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Trellix | Trellix Intelligent Sandbox | 5.0 ~ 5.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet