We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Zendesk (Helpdesk and Chat)
Ok

THREATINT
PUBLISHED

CVE-2024-0862

Reserved:2024-01-24
Published:2024-05-14
Updated:2024-05-14

Description

The Proofpoint Encryption endpoint of Proofpoint Enterprise Protection contains a Server-Side Request Forgery vulnerability that allows an authenticated user to relay HTTP requests from the Protection server to otherwise private network addresses.



MEDIUM: 5.0CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N

Problem types

CWE-918 Server-Side Request Forgery (SSRF)

Product status

Default status
affected

8.18.6 before patch 4868
affected

8.20.0 before patch 4869
affected

8.20.2 before patch 4870
affected

8.20.4 before patch 4871
affected

8.21.0 before patch 4871
affected

References

https://www.proofpoint.com/us/security/security-advisories/pfpt-sa-2024-0001

cve.org CVE-2024-0862

nvd.nist.gov CVE-2024-0862

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-0862