AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-10656

CRITICAL · CVSS 9.8 EPSS 2.58%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-01-06 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.

CVE
CVE-2020-10656
Severity
CRITICAL
CVSS
9.8
EPSS
2.58%

Original NVD Description

The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.9.1 contains a vulnerability in the ITM application server's WriteWindowMouseWithChunksV2 API. The vulnerability allows an anonymous remote attacker to execute arbitrary code with local administrator privileges. The vulnerability is caused by improper deserialization.

Related CVEs

Other vulnerabilities affecting the same vendor(s)