Vulnerabilities > Proofpoint > Insider Threat Management > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-01-06 CVE-2020-8884 Deserialization of Untrusted Data vulnerability in Proofpoint Insider Threat Management
rcdsvc in the Proofpoint Insider Threat Management Windows Agent (formerly ObserveIT Windows Agent) before 7.9 allows remote authenticated users to execute arbitrary code as SYSTEM because of improper deserialization over named pipes.
network
low complexity
proofpoint CWE-502
critical
9.0