5.8
CVSSv2

CVE-2021-27899

Published: 06/04/2021 Updated: 12/04/2021
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.4 | Impact Score: 5.2 | Exploitability Score: 2.2
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

The Proofpoint Insider Threat Management Agents (formerly ObserveIT Agent) for MacOS and Linux perform improper validation of the ITM Server's certificate, which enables a remote malicious user to intercept and alter these communications using a man-in-the-middle attack. All versions prior to 7.11.1 are affected. Agents for Windows and Cloud are not affected.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

proofpoint insider threat management