Back to Database
Status published
Medium
CVE-2024-0862
The Proofpoint Encryption endpoint of Proofpoint Enterprise Protection contains a...
Vulnerability Description
The Proofpoint Encryption endpoint of Proofpoint Enterprise Protection contains a Server-Side Request Forgery vulnerability that allows an authenticated user to relay HTTP requests from the Protection server to otherwise private network addresses.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-0862
Credits & Attribution
No credits recorded in the NVD database.
More from Proofpoint
View All →CVE-2025-8558
Insider Threat Management (ITM) Server versions prior to 7.17.2 contain an authentication...
Low
2.3
CVE-2025-0431
Enterprise Protection Backslash URL Rewrite Bypass
Medium
5.8
CVE-2024-3676
The Proofpoint Encryption endpoint of Proofpoint Enterprise Protection contains an...
High
7.5
CVE-2024-10635
Enterprise Protection S/MIME Opaque Signature Attachment Scanning Bypass
Medium
6.1
CVE-2023-5771
HTML injection in AdminUI through email subject
Medium
6.1
Affected Vendor
Proofpoint
View all reports →Affected Software
Enterprise Protection
Vulnerable Versions:
8.18.6, 8.20.0, 8.20.2, 8.20.4, 8.21.0
Timeline
Official Publish:
May 14th, 2024
Last Modified:
August 20th, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N