Trellix

First CVE: Apr 2, 2018Active for: 8 years
336
CVEs Published
More CVEs Published than 84% of tracked CNAs
37.3
Avg CVEs / Year
More Avg CVEs / Year than 80% of tracked CNAs
6.8
Avg CVSS Score
Higher Avg CVSS Score than 34% of tracked CNAs
0.3%
In CISA KEV
Higher KEV Rate than 82% of tracked CNAs

Self-Reporting Analysis

Of all the CVEs published by Trellix as a CNA, 9.5% affect products that Trellix develops as a vendor.

90.5%
Self-reported: 32Third-party: 304

Of all the CVEs published that affect products developed by Trellix, 100.0% are self-published by Trellix as a CNA.

100.0%
Self-published: 32Published by other CNAs: 0

Trends Over Time

The number and severity of CVEs published by Trellix over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 2, 2018
8 years ago
Most Recent CVE
Jul 14, 2026
10 days ago

Top CVEs

All CVEs published by Trellix as a CNA, regardless of affected vendor or product.

336 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Arbitrary Process Execution vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevated privileges and execute arbitrary code bypassing MTP
Feb 10, 20217.862YESNO
Privilege Escalation vulnerability in Microsoft Windows client in McAfee True Key (TK) 5.1.230.7 and earlier allows local users to execute arbitrary code via specially crafted malw
Dec 6, 20187.835NOYES
Authentication Abuse vulnerability in Microsoft Windows client in McAfee True Key (TK) 5.1.230.7 and earlier allows local users to execute unauthorized commands via specially craft
Dec 6, 20187.835NOYES
Weak Directory Permission Vulnerability in Microsoft Windows client in McAfee True Key (TK) 5.1.230.7 and earlier allows local users to execute arbitrary code via specially crafted
Dec 6, 20187.835NOYES
A buffer overflow vulnerability exists in Linksys WRT54GL Wireless-G Broadband Router with firmware <= 4.30.18.006. A stack-based buffer overflow in the Start_EPI function within t
Jan 9, 20237.234NONO
Stack-based Buffer Overflow vulnerability in libUPnPHndlr.so in Belkin Wemo Insight Smart Plug allows remote attackers to bypass local security protection via a crafted HTTP post p
Aug 21, 201810.033NONO
Application Protection Bypass vulnerability in McAfee ePolicy Orchestrator (ePO) 5.3.0 through 5.3.3 and 5.9.0 through 5.9.1 allows remote authenticated users to bypass localhost o
Jun 15, 20186.533NOYES
A Code Injection vulnerability existed in Trellix Network Security CM and NX. A locally authenticated admin user can execute arbitrary code using the web interface and Alert artifa
Jun 26, 20267.132NONO
Use After Free in Remote logging (which is disabled by default) in McAfee McAfee Agent (MA) 5.x prior to 5.6.0 allows remote unauthenticated attackers to cause a Denial of Service
Dec 11, 20189.832NONO
Insecure Deserialization in some workflows of the IPS Manager allows unauthenticated remote attackers to perform arbitrary code execution and access to the vulnerable Trellix IPS M
Jun 14, 20249.831NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA336 CVEs
Severity distribution among all CVEs352,231 CVEs
LowMediumHighCritical
Attack Vector
Local160 (47.6%)
Network151 (44.9%)
Unknown0 (0.0%)
Physical7 (2.1%)
Adjacent Network16 (4.8%)
Attack Complexity
Low312 (92.9%)
High24 (7.1%)
Unknown0 (0.0%)
User Interaction
None249 (74.1%)
Unknown0 (0.0%)
Required86 (25.6%)
Privileges Required
Low174 (51.8%)
High79 (23.5%)
None83 (24.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (336 CVEs).

CISA KEV
1 CVE
0.3% of CVEs· 82nd percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
0.3% of CVEs· 72nd percentile
ExploitDB
6 CVEs
1.8% of CVEs· 88th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID published by Trellix as a CNA.

Media Mentions

Media articles that mention a CVE ID published by Trellix as a CNA — matched by CVE ID, not by organization name.

Top Affected Vendors

Top Affected Products

Top CWEs