CVE-2020-14009

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
07/05/2021
Last modified:
19/05/2021

Description

Proofpoint Enterprise Protection (PPS/PoD) before 8.16.4 contains a vulnerability that could allow an attacker to deliver an email message with a malicious attachment that bypasses scanning and file-blocking rules. The vulnerability exists because messages with certain crafted and malformed multipart structures are not properly handled.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:proofpoint:enterprise_protection:*:*:*:*:-:*:*:* 8.13.16 (excluding)
cpe:2.3:a:proofpoint:enterprise_protection:*:*:*:*:-:*:*:* 8.14.0 (including) 8.16.4 (excluding)