7.8
CVE-2022-46334
- EPSS 0.03%
- Veröffentlicht 21.12.2022 21:15:09
- Zuletzt bearbeitet 21.11.2024 07:30:24
- Quelle security@proofpoint.com
- CVE-Watchlists
- Unerledigt
Proofpoint Enterprise Protection (PPS/PoD) contains a vulnerability which allows the pps user to escalate to root privileges due to unnecessary permissions. This affects all versions 8.19.0 and below.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Proofpoint ≫ Enterprise Protection Version <= 8.19.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.03% | 0.097 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| security@proofpoint.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-269 Improper Privilege Management
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.