Local Privilege Escalation Vulnerability in Proofpoint Insider Threat Management Windows Agent
CVE-2021-22159
7.8HIGH
What is CVE-2021-22159?
The Proofpoint Insider Threat Management Agent for Windows has a vulnerability that permits local authenticated users to execute arbitrary commands with SYSTEM-level privileges. This flaw arises due to a lack of authentication for a critical function within the agent, opening a pathway for potential exploitation by malicious insiders. It is important to note that this vulnerability does not affect the agents for MacOS, Linux, or ITM Cloud.