CVE-2025-7958: Trellix Network Security Nx, Ex, Fx, Ax, And CMS
High severity, CVSS 7.1. EPSS: 0.3% chance of exploitation in the next 30 days.
A Code Injection vulnerability existed in Trellix Network Security CM and NX. A locally authenticated admin user can execute arbitrary code using the web interface and Alert artifact details.
Affected products
- Trellix Trellix Network Security Nx, Ex, Fx, Ax, And CMS: version 10.0.4 only
Published 2026-06-26. Last modified 2026-09-29.