CVE 7.1 HIGH

CVE-2025-7958_CVE-2025-7958

7.1 / 10
HIGH
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P

Description

A Code Injection vulnerability existed in Trellix Network Security CM and NX. A locally authenticated admin user can execute arbitrary code using the web interface and Alert artifact details.

Basic Information

ID CVE-2025-7958
Source trellix
Published Jun 26, 2026 at 10:15

Affected Product

Vendor Trellix
Product Trellix Network Security NX, EX, FX, AX, and CMS
Version 10.0.4
Affected Versions Trellix Trellix Network Security NX, EX, FX, AX, and CMS 10.0.4

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.