Generated remediation guidance and an executive summary. No account required.
rcdsvc in the Proofpoint Insider Threat Management Windows Agent (formerly ObserveIT Windows Agent) before 7.9 allows remote authenticated users to execute arbitrary code as SYSTEM because of improper deserialization over named pipes.
Cite this page
CVE-2020-8884. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2020-8884
Use CWE-502, Proofpoint vendor hub and Insider Threat Management product page to widen CVE-2020-8884 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-27900, CVE-2022-25294 and CVE-2021-22159 for nearby disclosures in the same product family. Additional editorial context is available in Weekly Security Roundup: Navigating the April 2026 Threat Landscape and Critical Framework Exploits.