PT-2012-1296 · Websense · Websense Email Security

Publicado

2012-08-26

·

Atualizado

2012-08-27

·

CVE-2009-5131

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Websense Email Security versions prior to 7.1
Description The issue concerns the Receive Service in Websense Email Security, where it fails to recognize domain extensions in the blacklist. This allows remote attackers to bypass intended access restrictions and send email messages via an SMTP session.
Recommendations For versions prior to 7.1, update to version 7.1 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2009-5131

Produtos afetados

Websense Email Security