Back to Database
Status published
Medium
CVE-2024-9678
An SQL Injection vulnerability existed in DLP Extension 11.11.1.3. ...
Vulnerability Description
An SQL Injection vulnerability existed in DLP Extension 11.11.1.3. The vulnerability allowed an attacker to perform arbitrary SQL queries potentially leading to command execution.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-9678
Credits & Attribution
No credits recorded in the NVD database.
More from Trellix
View All →CVE-2025-7958
A Code Injection vulnerability existed in Trellix Network Security CM...
High
7.1
CVE-2025-5967
A stored cross-site scripting vulnerability in ENS HX 10.0.4 allows...
Medium
5.3
CVE-2025-3773
A sensitive information exposure vulnerability in System Information Reporter...
Unknown
0
CVE-2025-3771
A path or symbolic link manipulation vulnerability in SIR 1.0.3...
High
7.2
CVE-2025-3722
A path traversal vulnerability in System Information Reporter (SIR) 1.0.3...
Unknown
0
Affected Vendor
Trellix
View all reports →Affected Software
DLP Extension
Vulnerable Versions:
11.11.1.3
Timeline
Official Publish:
December 16th, 2024
Last Modified:
December 16th, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N