CVE-2021-27899
HIGHProofpoint Insider Threat Management < 7.11.1 - Improper Certificate Validation
Title source: llmDescription
The Proofpoint Insider Threat Management Agents (formerly ObserveIT Agent) for MacOS and Linux perform improper validation of the ITM Server's certificate, which enables a remote attacker to intercept and alter these communications using a man-in-the-middle attack. All versions before 7.11.1 are affected. Agents for Windows and Cloud are not affected.
References (1)
Core 1
Core References
Vendor Advisory x_refsource_confirm
https://www.proofpoint.com/us/security/security-advisories/pfpt-sa-2021-0004
Scores
CVSS v3
7.4
EPSS
0.0064
EPSS Percentile
45.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Details
CWE
CWE-295
Status
published
Products (1)
proofpoint/insider_threat_management
7.9.0 - 7.9.3 (2 CPE variants)
Published
Apr 06, 2021
Tracked Since
Feb 18, 2026