Proofpoint Enterprise Protection contains a stored XSS vulnerability in the AdminUI. An unauthenticated attacker can send a specially crafted email with HTML in the subject which triggers XSS when viewing quarantined messages.  This issue affects Proofpoint Enterprise Protection: from 8.20.0 before patch 4796, from 8.18.6 before patch 4795 and all other prior versions.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-58054 Proofpoint Enterprise Protection contains a stored XSS vulnerability in the AdminUI. An unauthenticated attacker can send a specially crafted email with HTML in the subject which triggers XSS when viewing quarantined messages.  This issue affects Proofpoint Enterprise Protection: from 8.20.0 before patch 4796, from 8.18.6 before patch 4795 and all other prior versions.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Proofpoint

Published:

Updated: 2024-09-04T18:55:47.857Z

Reserved: 2023-10-25T17:57:54.611Z

Link: CVE-2023-5771

cve-icon Vulnrichment

Updated: 2024-08-02T08:07:32.734Z

cve-icon NVD

Status : Modified

Published: 2023-11-06T21:15:10.203

Modified: 2024-11-21T08:42:27.397

Link: CVE-2023-5771

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.