An improper certification validation vulnerability in the Insider Threat Management (ITM) Agent for MacOS could be used by an anonymous actor on an adjacent network to establish a man-in-the-middle position between the agent and the ITM server after the agent has registered. All versions prior to 7.14.3.69 are affected. Agents for Windows, Linux, and Cloud are unaffected.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Proofpoint

Published: 2023-09-13T15:14:36.165Z

Updated: 2024-08-02T07:38:00.701Z

Reserved: 2023-09-06T15:23:18.574Z

Link: CVE-2023-4801

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-09-13T16:15:10.767

Modified: 2023-09-15T19:06:01.270

Link: CVE-2023-4801

cve-icon Redhat

No data.