Skip to content
Noroxi

websense records

49 published records for vendor websense.

All records

49 records
  • Unspecified vulnerability in Websense TRITON AP-EMAIL before 8.0.0 has unknown impact and attack vectors, related to "Autocomplete Enabled."

    CriticalCVSS 10.0No exploitEPSS 1%

    websense · triton ap emailMar 27, 2015

  • Unspecified vulnerability in Websense TRITON AP-EMAIL before 8.0.0 has unknown impact and attack vectors, related to port 17703.

    CriticalCVSS 10.0No exploitEPSS 1%

    websense · triton ap emailMar 27, 2015

  • CVE-2015-2746
    34Monitor

    The network diagnostics tool (CommandLineServlet) in the Appliance Manager command line utility (CLU) in Websense TRITON 7.8.3 and V-Series

    MediumCVSS 6.5Proof of conceptEPSS 25%

    websense · tritonMar 26, 2015

  • CVE-2011-5102
    31Monitor

    The Investigative Reports web interface in the TRITON management console in Websense Web Security 7.1 before Hotfix 109, 7.1.1 before Hotfix

    HighCVSS 7.5No exploitEPSS 4%

    websense · websense web filterAug 23, 2012

  • CVE-2015-2772
    30Monitor

    SVM in Websense TRITON V-Series appliances before 8.0.0 allows attackers to upload arbitrary files via unspecified vectors.

    HighCVSS 7.5No exploitEPSS 1%

    websense · v-series appliancesMar 27, 2015

  • TRITON AP-EMAIL 8.2 before 8.2 IB does not properly restrict file access in an unspecified directory.

    HighCVSS 7.5No exploitEPSS 1%

    websense · triton ap emailNov 6, 2017

  • CVE-2015-2769
    27Monitor

    Multiple cross-site request forgery (CSRF) vulnerabilities in the Personal Email Manager (PEM) in Websense TRITON AP-EMAIL before 8.0.0 allo

    MediumCVSS 6.8No exploitEPSS 1%

    websense · triton ap emailMar 27, 2015

  • CVE-2015-2770
    27Monitor

    Cross-site request forgery (CSRF) vulnerability in the command line page in Websense TRITON V-Series appliances before 8.0.0 allows remote a

    MediumCVSS 6.8No exploitEPSS 1%

    websense · v-series appliancesMar 27, 2015

  • CVE-2007-6312
    22Monitor

    Cross-site scripting (XSS) vulnerability in the logon page in Web Reporting Tools portal in Websense Enterprise and Web Security Suite 6.3 a

    MediumCVSS 4.3No exploitEPSS 16%

    websense · enterpiseDec 11, 2007

  • CVE-2009-3749
    22Monitor

    The Web Administrator service (STEMWADM.EXE) in Websense Personal Email Manager 7.1 before Hotfix 4 and Email Security 7.1 before Hotfix 4 a

    MediumCVSS 5.0Proof of conceptEPSS 8%

    websense · email securityOct 22, 2009

  • CVE-2015-2748
    21Monitor

    Websense TRITON AP-WEB before 8.0.0 does not properly restrict access to files in explorer_wse/, which allows remote attackers to obtain sen

    MediumCVSS 5.0No exploitEPSS 2%

    websense · triton ap dataMar 26, 2015

  • CVE-2007-6511
    21Monitor

    Websense Enterprise 6.3.1 allows remote attackers to bypass content filtering by visiting http URLs with a (1) RealPlayer G2, (2) MSMSGS, or

    MediumCVSS 5.0No exploitEPSS 2%

    websense · enterpiseDec 21, 2007

  • CVE-2010-5149
    20Monitor

    Websense Web Security and Web Filter before 6.3.3 Hotfix 27 and 7.x before 7.1.1 allow remote attackers to cause a denial of service (Blue C

    MediumCVSS 5.0No exploitEPSS 2%

    websense · websense web securityAug 23, 2012

  • CVE-2009-5131
    20Monitor

    The Receive Service in Websense Email Security before 7.1 does not recognize domain extensions in the blacklist, which allows remote attacke

    MediumCVSS 5.0No exploitEPSS 1%

    websense · websense email securityAug 26, 2012

  • CVE-2012-4605
    20Monitor

    The default configuration of the SMTP component in Websense Email Security 6.1 through 7.3 enables weak SSL ciphers in the "SurfControl plc\

    MediumCVSS 5.0No exploitEPSS 1%

    websense · websense email securityAug 23, 2012

  • CVE-2010-5148
    20Monitor

    Websense Web Security and Web Filter before 7.1 Hotfix 21 do not set the secure flag for the Encrypted Session (SSL) cookie in an https sess

    MediumCVSS 5.0No exploitEPSS 1%

    websense · websense web filterAug 23, 2012

  • CVE-2009-5129
    20Monitor

    The Websense V10000 appliance before 1.0.1 allows remote attackers to cause a denial of service (intermittent LDAP authentication outage) vi

    MediumCVSS 5.0No exploitEPSS 1%

    websense · websense v10000Aug 26, 2012

  • CVE-2015-2762
    20Monitor

    Websense TRITON AP-WEB before 8.0.0 allows remote attackers to enumerate Windows domain user accounts via vectors related to HTTP authentica

    MediumCVSS 5.0No exploitEPSS 1%

    websense · triton ap webMar 27, 2015

  • CVE-2009-5132
    20Monitor

    The Filtering Service in Websense Web Security and Web Filter before 6.3.1 Hotfix 106 and 7.x before 7.1 allow remote attackers to cause a d

    MediumCVSS 5.0No exploitEPSS 1%

    websense · websense web filterAug 26, 2012

  • CVE-2009-5128
    20Monitor

    The Websense V10000 appliance before 1.0.1 allows remote attackers to cause a denial of service (memory consumption and process crash) via a

    MediumCVSS 5.0No exploitEPSS 1%

    websense · websense v10000Aug 26, 2012

  • CVE-2009-5121
    20Monitor

    Websense Email Security 7.1 before Hotfix 4 allows remote attackers to bypass the sender-based blacklist by using the 8BITMIME EHLO keyword

    MediumCVSS 5.0No exploitEPSS 1%

    websense · websense email securityAug 23, 2012

  • CVE-2010-5147
    20Monitor

    The Remote Filtering component in Websense Web Security and Web Filter before 6.3.3 Hotfix 18 and 7.x before 7.1.1 allows remote attackers t

    MediumCVSS 5.0No exploitEPSS 1%

    websense · websense web securityAug 23, 2012

  • CVE-2008-7312
    20Monitor

    The Filtering Service in Websense Enterprise 5.2 through 6.3 does not consider the IP address during URL categorization, which makes it easi

    MediumCVSS 5.0No exploitEPSS 1%

    websense · enterpriseAug 23, 2012

  • CVE-2015-2771
    20Monitor

    The Mail Server in Websense TRITON AP-EMAIL and V-Series appliances before 8.0.0 uses plaintext credentials, which allows remote attackers t

    MediumCVSS 5.0No exploitEPSS 1%

    websense · triton ap emailMar 27, 2015

  • CVE-2009-5122
    20Monitor

    The Personal Email Manager component in Websense Email Security before 7.2 allows remote attackers to obtain potentially sensitive informati

    MediumCVSS 5.0No exploitEPSS 1%

    websense · websense email securityAug 23, 2012