What is the Proofpoint CNA?
Proofpoint is a CVE Numbering Authority (CNA) — an organization authorized to assign CVE IDs to vulnerabilities in its scope. It has published 22 CVE records since 2022.
How many CVEs has Proofpoint published?
Proofpoint has published 22 CVE records, including 5 in the last two years.
What is Proofpoint's CVE data quality grade?
RadicalNotion.AI grades Proofpoint's CVE data quality as A, with an overall completeness score of 100%. This reflects how consistently its CVE records include vendor (100%), product (100%), CVSS (100%), and CWE (100%) information.
What products does Proofpoint publish CVEs for?
Proofpoint most frequently publishes CVEs for Enterprise Protection, Insider Threat Management, enterprise_protection, insider threat management server, ITM Server.
Which vendors does Proofpoint cover?
Proofpoint publishes CVEs across 2 distinct vendors, most often Proofpoint, apple, prootpoint.
Is Proofpoint actively publishing CVEs?
Proofpoint is currently active, based on 5 CVEs in the last two years.
What is the average severity of Proofpoint's CVEs?
The average CVSS base score across Proofpoint's scored CVEs is 6.2.
How many critical CVEs has Proofpoint published?
Proofpoint has published 2 critical-severity CVEs and 5 high-severity CVEs.
Are any of Proofpoint's CVEs in CISA's Known Exploited Vulnerabilities catalog?
No. None of Proofpoint's CVEs are currently listed in CISA's Known Exploited Vulnerabilities (KEV) catalog.
What are the most common weakness types in Proofpoint's CVEs?
Proofpoint's CVEs most often map to these CWE weakness types: CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-862 (Missing Authorization), CWE-95 (Improper Neutralization of Directives in Dynamically Evaluated Code ('Eval Injection')), CWE-754 (Improper Check for Unusual or Exceptional Conditions).
How does Proofpoint rank among CNAs?
By total CVE volume, Proofpoint ranks #235 of 370 CNAs, and it reports more complete CVE records than 60% of all CNAs.