High severity8.8NVD Advisory· Published Jan 13, 2020· Updated Jun 17, 2026
CVE-2019-19680
CVE-2019-19680
Description
A file-extension filtering vulnerability in Proofpoint Enterprise Protection (PPS / PoD), in the unpatched versions of PPS through 8.9.22 and 8.14.2 respectively, allows attackers to bypass protection mechanisms (related to extensions, MIME types, virus detection, and journal entries for transmitted files) by sending malformed (not RFC compliant) multipart email.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:proofpoint:enterprise_protection:*:*:*:*:-:*:*:*+ 2 more
- cpe:2.3:a:proofpoint:enterprise_protection:*:*:*:*:-:*:*:*range: <=8.14.2
- cpe:2.3:a:proofpoint:enterprise_protection:*:*:*:*:lts:*:*:*range: <=8.9.22
- (no CPE)range: <=8.9.22, <=8.14.2
- Proofpoint/Enterprise Protectiondescription
- Range: <=8.9.22
- Range: <=8.14.2
Patches
Vulnerability mechanics
References
2- www.proofpoint.com/us/security/cve-2019-19680nvdVendor Advisory
- www.proofpoint.com/us/security/security-advisories/pfpt-sa-2020-0001nvdVendor Advisory
News mentions
0No linked articles in our index yet.