Page 3 of 21 results (0.003 seconds)

CVSS: 9.8EPSS: 1%CPEs: 1EXPL: 0

06 Jan 2021 — The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.9.1 contains a vulnerability in the ITM application server's WriteWindowMouse API. The vulnerability allows an anonymous remote attacker to execute arbitrary code with local administrator privileges. The vulnerability is caused by improper deserialization. Proofpoint Insider Threat Management Server (anteriormente ObserveIT Server) versiones anteriores a 7.9.1, contiene una vulnerabilidad en la API WriteWindowMouse del serv... • https://www.proofpoint.com/us/blog • CWE-502: Deserialization of Untrusted Data •