CVE-2025-8558
BaseFortify
Publication date: 2025-11-03
Last updated on: 2025-11-07
Assigner: Proofpoint Inc.
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| proofpoint | insider_threat_management_server | to 7.17.2 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-306 | The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is an authentication bypass in Insider Threat Management (ITM) Server versions prior to 7.17.2. It allows unauthenticated users on an adjacent network to unregister agents when the number of registered agents exceeds the licensed limit. This means attackers can remove agents without proper authentication.
How can this vulnerability impact me? :
Exploiting this vulnerability prevents the server from receiving new events from affected agents, causing a partial loss of integrity and availability of the system. However, it does not impact confidentiality.