Back to Database
Status published
Medium
CVE-2004-2357
The embedded MySQL 4.0 server for Proofpoint Protection Server does...
Vulnerability Description
The embedded MySQL 4.0 server for Proofpoint Protection Server does not require a password for the root user of MySQL, which allows remote attackers to read or modify the backend database.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2004-2357
Credits & Attribution
No credits recorded in the NVD database.
References
More from proofpoint
View All →CVE-2023-0090
Proofpoint Enterprise Protection webservices unauthenticated RCE
Critical
9.8
CVE-2023-0089
Proofpoint Enterprise Protection webutils authenticated RCE
High
8.8
CVE-2022-46333
Proofpoint Enterprise Protection perl eval() arbitrary command execution
High
7.2
CVE-2022-46332
Proofpoint Enterprise Protection (PPS/PoD) XSS in "Attachment Names"
Critical
9.6
CVE-2022-25294
Proofpoint Insider Threat Management Agent for Windows relies on an...
High
7.8
Affected Vendor
proofpoint
View all reports →Affected Software
proofpoint protection server
Vulnerable Versions:
Unknown
Timeline
Official Publish:
August 16th, 2005
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.