CVE-2023-4801
ITM MacOS Agent Improper Certificate Validation
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An improper certification validation vulnerability in the Insider Threat Management (ITM) Agent for MacOS could be used by an anonymous actor on an adjacent network to establish a man-in-the-middle position between the agent and the ITM server after the agent has registered. All versions prior to 7.14.3.69 are affected. Agents for Windows, Linux, and Cloud are unaffected.
Un actor anónimo en una red adyacente podría utilizar una vulnerabilidad de validación de certificación inadecuada en el agente Insider Threat Management (ITM) para MacOS para establecer una posición intermedia entre el agente y el servidor ITM después de que el agente se haya registrado. Todas las versiones anteriores a la 7.14.3.69 se ven afectadas. Los agentes para Windows, Linux y Cloud no se ven afectados.
CVSS Scores
SSVC
- Decision:Track*
Timeline
- 2023-09-06 CVE Reserved
- 2023-09-13 CVE Published
- 2023-09-16 EPSS Updated
- 2024-09-25 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-295: Improper Certificate Validation
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://www.proofpoint.com/us/security/security-advisories/pfpt-sa-2023-006 | Broken Link |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.proofpoint.com/us/security/security-advisories/pfpt-sa-2023-0006 | 2023-09-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Proofpoint Search vendor "Proofpoint" | Insider Threat Management Search vendor "Proofpoint" for product "Insider Threat Management" | < 7.14.3.69 Search vendor "Proofpoint" for product "Insider Threat Management" and version " < 7.14.3.69" | macos |
Affected
|