From 1080ec39f685c650c5d24709d5e7ca8402b908f6 Mon Sep 17 00:00:00 2001 From: cad-safe-bot Date: Thu, 14 Sep 2023 08:00:30 +0000 Subject: [PATCH] Auto-Update: 2023-09-14T08:00:26.669890+00:00 --- CVE-2023/CVE-2023-48xx/CVE-2023-4814.json | 55 +++++++++++++++++++++++ README.md | 11 +++-- 2 files changed, 60 insertions(+), 6 deletions(-) create mode 100644 CVE-2023/CVE-2023-48xx/CVE-2023-4814.json diff --git a/CVE-2023/CVE-2023-48xx/CVE-2023-4814.json b/CVE-2023/CVE-2023-48xx/CVE-2023-4814.json new file mode 100644 index 00000000000..dfd2987ff63 --- /dev/null +++ b/CVE-2023/CVE-2023-48xx/CVE-2023-4814.json @@ -0,0 +1,55 @@ +{ + "id": "CVE-2023-4814", + "sourceIdentifier": "trellixpsirt@trellix.com", + "published": "2023-09-14T07:15:41.283", + "lastModified": "2023-09-14T07:15:41.283", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "\nA Privilege escalation vulnerability exists in Trellix Windows DLP endpoint for windows which can be abused to delete any file/folder for which the user does not have permission to.\n\n" + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "trellixpsirt@trellix.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H", + "attackVector": "LOCAL", + "attackComplexity": "LOW", + "privilegesRequired": "LOW", + "userInteraction": "NONE", + "scope": "UNCHANGED", + "confidentialityImpact": "NONE", + "integrityImpact": "HIGH", + "availabilityImpact": "HIGH", + "baseScore": 7.1, + "baseSeverity": "HIGH" + }, + "exploitabilityScore": 1.8, + "impactScore": 5.2 + } + ] + }, + "weaknesses": [ + { + "source": "trellixpsirt@trellix.com", + "type": "Secondary", + "description": [ + { + "lang": "en", + "value": "CWE-250" + } + ] + } + ], + "references": [ + { + "url": "https://kcm.trellix.com/corporate/index?page=content&id=SB10407", + "source": "trellixpsirt@trellix.com" + } + ] +} \ No newline at end of file diff --git a/README.md b/README.md index c40f1db4617..4c777b91dda 100644 --- a/README.md +++ b/README.md @@ -9,13 +9,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2023-09-14T06:00:24.877616+00:00 +2023-09-14T08:00:26.669890+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2023-09-14T05:15:11.363000+00:00 +2023-09-14T07:15:41.283000+00:00 ``` ### Last Data Feed Release @@ -29,15 +29,14 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/ ### Total Number of included CVEs ```plain -224904 +224905 ``` ### CVEs added in the last Commit -Recently added CVEs: `2` +Recently added CVEs: `1` -* [CVE-2023-4948](CVE-2023/CVE-2023-49xx/CVE-2023-4948.json) (`2023-09-14T04:15:10.457`) -* [CVE-2023-26141](CVE-2023/CVE-2023-261xx/CVE-2023-26141.json) (`2023-09-14T05:15:11.363`) +* [CVE-2023-4814](CVE-2023/CVE-2023-48xx/CVE-2023-4814.json) (`2023-09-14T07:15:41.283`) ### CVEs modified in the last Commit