Generated remediation guidance and an executive summary. No account required.
The webservices in Proofpoint Enterprise Protection (PPS/POD) contain a vulnerability that allows for an anonymous user to execute remote code through 'eval injection'. Exploitation requires network access to the webservices API, but such access is a non-standard configuration. This affects all versions 8.20.0 and below.
Cite this page
CVE-2023-0090. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2023-0090
Use CWE-95, Proofpoint vendor hub and Enterprise Protection product page to widen CVE-2023-0090 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-46332, CVE-2023-0089 and CVE-2019-19680 for nearby disclosures in the same product family.