Skip to content
Noroxi

Proofpoint records

45 published records for vendor proofpoint.

All records

45 records
  • The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.9.1 contains a vulnerability in the ITM application ser

    CriticalCVSS 9.8No exploitEPSS 3%

    proofpoint · insider threat management serverJan 6, 2021

  • The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.9.1 contains a vulnerability in the ITM application ser

    CriticalCVSS 9.8No exploitEPSS 3%

    proofpoint · insider threat management serverJan 6, 2021

  • The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.9.1 contains a vulnerability in the ITM application ser

    CriticalCVSS 9.8No exploitEPSS 3%

    proofpoint · insider threat management serverJan 6, 2021

  • Proofpoint Insider Threat Management Server contains a SQL injection vulnerability in the Web Console.

    CriticalCVSS 9.8No exploitEPSS 1%

    proofpoint · insider threat management serverOct 13, 2021

  • CVE-2023-0090
    39Monitor

    Proofpoint Enterprise Protection webservices unauthenticated RCE

    CriticalCVSS 9.8Proof of conceptEPSS 1%

    proofpoint · enterprise protectionMar 7, 2023

  • Proofpoint Enterprise Protection (PPS/PoD) XSS in "Attachment Names"

    CriticalCVSS 9.6No exploitEPSS 1%

    proofpoint · enterprise protectionDec 6, 2022

  • CVE-2020-8884
    36Monitor

    rcdsvc in the Proofpoint Insider Threat Management Windows Agent (formerly ObserveIT Windows Agent) before 7.9 allows remote authenticated u

    HighCVSS 8.8No exploitEPSS 4%

    proofpoint · insider threat managementJan 6, 2021

  • A file-extension filtering vulnerability in Proofpoint Enterprise Protection (PPS / PoD), in the unpatched versions of PPS through 8.9.22 an

    HighCVSS 8.8No exploitEPSS 1%

    proofpoint · enterprise protectionJan 13, 2020

  • CVE-2023-0089
    35Monitor

    Proofpoint Enterprise Protection webutils authenticated RCE

    HighCVSS 8.8Proof of conceptEPSS 1%

    proofpoint · enterprise protectionMar 7, 2023

  • The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) is missing an authorization check on several pages in the Web Co

    HighCVSS 8.1No exploitEPSS 2%

    proofpoint · insider threat managementApr 6, 2021

  • CVE-2011-1904
    31Monitor

    An unspecified function in the web interface in Proofpoint Messaging Security Gateway 6.2.0.263:6.2.0.237 and earlier in Proofpoint Protecti

    HighCVSS 7.5No exploitEPSS 2%

    proofpoint · messaging security gatewayMay 5, 2011

  • CVE-2011-1901
    31Monitor

    The mail-filter web interface in Proofpoint Messaging Security Gateway 6.2.0.263:6.2.0.237 and earlier in Proofpoint Protection Server 5.5.3

    HighCVSS 7.5No exploitEPSS 2%

    proofpoint · messaging security gatewayMay 5, 2011

  • Insider Threat Management Windows Agent Local Privilege Escalation Vulnerability The Proofpoint Insider Threat Management (formerly ObserveI

    HighCVSS 7.8No exploitEPSS 0%

    proofpoint · insider threat managementJan 26, 2021

  • Proofpoint Insider Threat Management Agent for Windows relies on an inherently dangerous function that could enable an unprivileged local Wi

    HighCVSS 7.8No exploitEPSS 0%

    proofpoint · insider threat managementMar 10, 2022

  • Proofpoint Enterprise Protection Local Privilege Escalation

    HighCVSS 7.8No exploitEPSS 0%

    proofpoint · enterprise protectionDec 21, 2022

  • CVE-2011-1903
    30Monitor

    SQL injection vulnerability in an unspecified function in Proofpoint Messaging Security Gateway 6.2.0.263:6.2.0.237 and earlier in Proofpoin

    HighCVSS 7.5No exploitEPSS 1%

    proofpoint · messaging security gatewayMay 5, 2011

  • Proofpoint Spam Engine before 8.12.0-2106240000 has a Security Control Bypass.

    HighCVSS 7.5No exploitEPSS 1%

    proofpoint · spam engineOct 13, 2021

  • Proofpoint Enterprise Protection before 8.12.0-2108090000 allows security control bypass.

    HighCVSS 7.5No exploitEPSS 1%

    proofpoint · enterprise protectionOct 13, 2021

  • CVE-2024-3676
    30Monitor

    The Proofpoint Encryption endpoint of Proofpoint Enterprise Protection contains an Improper Input Validation vulnerability that allows an un

    HighCVSS 7.5No exploitEPSS 0%

    proofpoint · enterprise protectionMay 14, 2024

  • CVE-2023-4801
    30Monitor

    ITM MacOS Agent Improper Certificate Validation

    HighCVSS 7.5No exploitEPSS 0%

    proofpoint · insider threat managementSep 13, 2023

  • The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.9.1 contains a vulnerability in the ITM web console's I

    HighCVSS 7.2No exploitEPSS 3%

    proofpoint · insider threat management serverJan 6, 2021

  • The Proofpoint Insider Threat Management Agents (formerly ObserveIT Agent) for MacOS and Linux perform improper validation of the ITM Server

    HighCVSS 7.4No exploitEPSS 1%

    proofpoint · insider threat managementApr 6, 2021

  • Proofpoint Insider Threat Management Server contains an unsafe deserialization vulnerability in the Web Console.

    HighCVSS 7.3No exploitEPSS 0%

    proofpoint · insider threat management serverOct 13, 2021

  • Proofpoint Enterprise Protection perl eval() arbitrary command execution

    HighCVSS 7.2No exploitEPSS 2%

    proofpoint · enterprise protectionDec 6, 2022

  • The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) is vulnerable to XML external entity (XXE) injection in the Web

    HighCVSS 7.2No exploitEPSS 1%

    proofpoint · insider threat managementApr 6, 2021