Proofpoint Enterprise Protection (PPS/PoD) contains a vulnerability which allows the pps user to escalate to root privileges due to unnecessary permissions. This affects all versions 8.19.0 and below.
oryginał ENCVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HProofpoint Enterprise Protection
APPProofpoint≤ 8.19.0
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Powiązane podatności
CVE-2023-0090CRITICAL9.8PL ✓ten sam produkt
RCE przez eval injection w Proofpoint Enterprise Protection
CVE-2022-46332CRITICAL9.6PL ✓ten sam produkt
Stored XSS w Proofpoint Enterprise Protection umożliwia eskalację uprawnień do admina
CVE-2023-0089HIGH8.8ten sam produkt
The webutils in Proofpoint Enterprise Protection (PPS/POD) contain a vulnerability that allows an authenticat...
CVE-2022-46333HIGH7.2ten sam produkt
The admin user interface in Proofpoint Enterprise Protection (PPS/PoD) contains a command injection vulnerabil...
CVE-2021-39304HIGH7.5ten sam produkt
Proofpoint Enterprise Protection before 8.12.0-2108090000 allows security control bypass.