PT-2012-2080 · Websense · Web Security Gateway+4

Publicado

2012-08-23

·

Atualizado

2012-08-23

·

CVE-2011-5102

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Websense Web Security versions 7.1 before Hotfix 109 Websense Web Security versions 7.1.1 before Hotfix 06 Websense Web Security versions 7.5 before Hotfix 78 Websense Web Security versions 7.5.1 before Hotfix 12 Websense Web Security versions 7.6 before Hotfix 24 Websense Web Security versions 7.6.2 before Hotfix 12 Web Filter (affected versions not specified) Web Security Gateway (affected versions not specified) Web Security Gateway Anywhere (affected versions not specified)
Description The Investigative Reports web interface in the TRITON management console allows remote attackers to execute commands via unspecified vectors.
Recommendations For Websense Web Security version 7.1, apply Hotfix 109. For Websense Web Security version 7.1.1, apply Hotfix 06. For Websense Web Security version 7.5, apply Hotfix 78. For Websense Web Security version 7.5.1, apply Hotfix 12. For Websense Web Security version 7.6, apply Hotfix 24. For Websense Web Security version 7.6.2, apply Hotfix 12. At the moment, there is no information about a fix for Web Filter, Web Security Gateway, and Web Security Gateway Anywhere.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2011-5102

Produtos afetados

Triton
Web Filter
Web Security Gateway
Web Security Gateway Anywhere
Websense Web Security