NA

CVE-2023-36002

Published: 27/06/2023 Updated: 06/07/2023
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A missing authorization check in multiple URL validation endpoints of the Insider Threat Management Server enables an anonymous attacker on an adjacent network to smuggle content via DNS lookups. All versions prior to 7.14.3 are affected.

Vulnerable Product Search on Vulmon Subscribe to Product

proofpoint insider threat management server