PT-2012-1287 · Red Hat+1 · Jboss+1

Published

2012-08-23

·

Updated

2017-08-29

·

CVE-2009-5122

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Websense Email Security versions prior to 7.2
Description The issue allows remote attackers to obtain potentially sensitive information from the JBoss status page via an unspecified query. This is related to the Personal Email Manager component.
Recommendations For versions prior to 7.2, update to version 7.2 or later to resolve the issue. As a temporary workaround, consider restricting access to the JBoss status page until the update is applied.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-5122

Affected Products

Jboss
Websense Email Security