Vulnerability Description
The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) is vulnerable to XML external entity (XXE) injection in the Web Console. The vulnerability requires admin user privileges and knowledge of the XML file's encryption key to successfully exploit. All versions before 7.11 are affected.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Proofpoint | Insider Threat Management | >= 7.9.0, < 7.9.3 |
Related Weaknesses (CWE)
References
- https://www.proofpoint.com/us/security/security-advisories/pfpt-sa-2021-0003Vendor Advisory
- https://www.proofpoint.com/us/security/security-advisories/pfpt-sa-2021-0003Vendor Advisory
FAQ
What is CVE-2021-22158?
CVE-2021-22158 is a vulnerability with a CVSS score of 7.2 (HIGH). The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) is vulnerable to XML external entity (XXE) injection in the Web Console. The vulnerability requires admin user privileges an...
How severe is CVE-2021-22158?
CVE-2021-22158 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-22158?
Check the references section above for vendor advisories and patch information. Affected products include: Proofpoint Insider Threat Management.