2024-04-04 08:46:00 +00:00

117 lines
3.7 KiB
JSON

{
"id": "CVE-2023-4801",
"sourceIdentifier": "security@proofpoint.com",
"published": "2023-09-13T16:15:10.767",
"lastModified": "2023-09-15T19:06:01.270",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "An improper certification validation vulnerability in the Insider Threat Management (ITM) Agent for MacOS could be used by an anonymous actor on an adjacent network to establish a man-in-the-middle position between the agent and the ITM server after the agent has registered. All versions prior to 7.14.3.69 are affected. Agents for Windows, Linux, and Cloud are unaffected."
},
{
"lang": "es",
"value": "Un actor an\u00f3nimo en una red adyacente podr\u00eda utilizar una vulnerabilidad de validaci\u00f3n de certificaci\u00f3n inadecuada en el agente Insider Threat Management (ITM) para MacOS para establecer una posici\u00f3n intermedia entre el agente y el servidor ITM despu\u00e9s de que el agente se haya registrado. Todas las versiones anteriores a la 7.14.3.69 se ven afectadas. Los agentes para Windows, Linux y Cloud no se ven afectados."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
"attackVector": "ADJACENT_NETWORK",
"attackComplexity": "HIGH",
"privilegesRequired": "NONE",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH",
"baseScore": 7.5,
"baseSeverity": "HIGH"
},
"exploitabilityScore": 1.6,
"impactScore": 5.9
},
{
"source": "security@proofpoint.com",
"type": "Secondary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
"attackVector": "ADJACENT_NETWORK",
"attackComplexity": "HIGH",
"privilegesRequired": "NONE",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH",
"baseScore": 7.5,
"baseSeverity": "HIGH"
},
"exploitabilityScore": 1.6,
"impactScore": 5.9
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-295"
}
]
},
{
"source": "security@proofpoint.com",
"type": "Secondary",
"description": [
{
"lang": "en",
"value": "CWE-295"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:proofpoint:insider_threat_management:*:*:*:*:*:macos:*:*",
"versionEndExcluding": "7.14.3.69",
"matchCriteriaId": "9D208A0B-339E-4393-B4C8-418D3ECAD85F"
}
]
}
]
}
],
"references": [
{
"url": "https://www.proofpoint.com/us/security/security-advisories/pfpt-sa-2023-0006",
"source": "nvd@nist.gov",
"tags": [
"Vendor Advisory"
]
},
{
"url": "https://www.proofpoint.com/us/security/security-advisories/pfpt-sa-2023-006",
"source": "security@proofpoint.com",
"tags": [
"Broken Link"
]
}
]
}