Vulnerability Details CVE-2020-14009
Proofpoint Enterprise Protection (PPS/PoD) before 8.16.4 contains a vulnerability that could allow an attacker to deliver an email message with a malicious attachment that bypasses scanning and file-blocking rules. The vulnerability exists because messages with certain crafted and malformed multipart structures are not properly handled.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 26.3%
CVSS Severity
CVSS v3 Score 6.3
CVSS v2 Score 6.8
Products affected by CVE-2020-14009
-
cpe:2.3:a:proofpoint:enterprise_protection:-
-
cpe:2.3:a:proofpoint:enterprise_protection:8.14.0
-
cpe:2.3:a:proofpoint:enterprise_protection:8.14.2