Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
proofpoint insider threat management vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2021-40842
Proofpoint Insider Threat Management Server contains a SQL injection vulnerability in the Web Console. The vulnerability exists due to improper input validation on the database name parameter required in certain unauthenticated APIs. A malicious URL visited by anyone with network...
Proofpoint Insider Threat Management Server 7.12.0
Proofpoint Insider Threat Management Server
7.5
CVSSv3
CVE-2023-4801
An improper certification validation vulnerability in the Insider Threat Management (ITM) Agent for MacOS could be used by an anonymous actor on an adjacent network to establish a man-in-the-middle position between the agent and the ITM server after the agent has registered. All ...
Proofpoint Insider Threat Management
4.8
CVSSv3
CVE-2023-4802
A reflected cross-site scripting vulnerability in the UpdateInstalledSoftware endpoint of the Insider Threat Management (ITM) Server's web console could be used by an authenticated administrator to run arbitrary javascript within another web console administrator's brow...
Proofpoint Insider Threat Management
6.1
CVSSv3
CVE-2021-22157
Proofpoint Insider Threat Management Server (formerly ObserveIT Server) prior to 7.11.1 allows stored XSS.
Proofpoint Insider Threat Management
7.2
CVSSv3
CVE-2021-22158
The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) is vulnerable to XML external entity (XXE) injection in the Web Console. The vulnerability requires admin user privileges and knowledge of the XML file's encryption key to successfully exploit. All v...
Proofpoint Insider Threat Management
7.4
CVSSv3
CVE-2021-27899
The Proofpoint Insider Threat Management Agents (formerly ObserveIT Agent) for MacOS and Linux perform improper validation of the ITM Server's certificate, which enables a remote malicious user to intercept and alter these communications using a man-in-the-middle attack. All...
Proofpoint Insider Threat Management
8.8
CVSSv3
CVE-2020-8884
rcdsvc in the Proofpoint Insider Threat Management Windows Agent (formerly ObserveIT Windows Agent) prior to 7.9 allows remote authenticated users to execute arbitrary code as SYSTEM because of improper deserialization over named pipes.
Proofpoint Insider Threat Management
5.5
CVSSv3
CVE-2023-2818
An insecure filesystem permission in the Insider Threat Management Agent for Windows enables local unprivileged users to disrupt agent monitoring. All versions before 7.14.3 are affected. Agents for MacOS and Linux and Cloud are unaffected.
Proofpoint Insider Threat Management
4.8
CVSSv3
CVE-2023-4803
A reflected cross-site scripting vulnerability in the WriteWindowTitle endpoint of the Insider Threat Management (ITM) Server's web console could be used by an authenticated administrator to run arbitrary javascript within another web console administrator's browser. Al...
Proofpoint Insider Threat Management
7.8
CVSSv3
CVE-2022-25294
Proofpoint Insider Threat Management Agent for Windows relies on an inherently dangerous function that could enable an unprivileged local Windows user to run arbitrary code with SYSTEM privileges. All versions before 7.12.1 are affected. Agents for MacOS and Linux and Cloud are u...
Proofpoint Insider Threat Management
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3080
log injection
CVE-2024-6041
CVE-2024-37661
XML external entity
CVE-2024-0845
privilege escalation
CVE-2023-37057
CVE-2024-27801
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »