CVEs (12)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Enterprise Protection contains an improper input validation vulnerability in attachment defense that allows an unauthenticated remote attacker to bypass attachment scanning security policy by sending a malicious S/MIME a...Show more |
Proofpoint Enterprise Protection contains a vulnerability in the email delivery agent that allows an unauthenticated attacker to inject improperly encoded HTML into the email body of a message through the email subject....Show more |
Proofpoint Enterprise Protection contains a stored XSS vulnerability in the AdminUI. An unauthenticated attacker can send a specially crafted email with HTML in the subject which triggers XSS when viewing quarantined mes...Show more |
The webservices in Proofpoint Enterprise Protection (PPS/POD) contain a vulnerability that allows for an anonymous user to execute remote code through 'eval injection'. Exploitation requires network access to the webser...Show more |
The webutils in Proofpoint Enterprise Protection (PPS/POD) contain a vulnerability that allows an authenticated user to execute remote code through 'eval injection'.
This affects all versions 8.20.0 and below.
|
Proofpoint Enterprise Protection (PPS/PoD) contains a vulnerability which allows the pps user to escalate to root privileges due to unnecessary permissions. This affects all versions 8.19.0 and below.
|
The admin user interface in Proofpoint Enterprise Protection (PPS/PoD) contains a command injection vulnerability that enables an admin to execute commands beyond their allowed scope. This affects all versions 8.19.0 an...Show more |
1Proofpoint 1Enterprise Protection Jun 17, 2026 Dec 6, 2022 N/A· v4 9.6 CRITICAL· v3 N/A· v2 The Admin Smart Search feature in Proofpoint Enterprise Protection (PPS/PoD) contains a stored cross-site scripting vulnerability that enables an anonymous email sender to gain admin privileges within the user interface....Show more |
Proofpoint Enterprise Protection before 18.8.0 allows a Bypass of a Security Control. |
1Proofpoint 1Enterprise Protection Jun 17, 2026 Oct 13, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Proofpoint Enterprise Protection before 8.12.0-2108090000 allows security control bypass. |
1Proofpoint 1Enterprise Protection Jun 17, 2026 May 7, 2021 N/A· v4 6.3 MEDIUM· v3 6.8 MEDIUM· v2 Proofpoint Enterprise Protection (PPS/PoD) before 8.16.4 contains a vulnerability that could allow an attacker to deliver an email message with a malicious attachment that bypasses scanning and file-blocking rules. The v...Show more |
1Proofpoint 1Enterprise Protection Jun 17, 2026 Jan 13, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 A file-extension filtering vulnerability in Proofpoint Enterprise Protection (PPS / PoD), in the unpatched versions of PPS through 8.9.22 and 8.14.2 respectively, allows attackers to bypass protection mechanisms (related...Show more |