PT-2012-2080 · Websense · Web Security Gateway+4
Published
2012-08-23
·
Updated
2012-08-23
·
CVE-2011-5102
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Websense Web Security versions 7.1 before Hotfix 109
Websense Web Security versions 7.1.1 before Hotfix 06
Websense Web Security versions 7.5 before Hotfix 78
Websense Web Security versions 7.5.1 before Hotfix 12
Websense Web Security versions 7.6 before Hotfix 24
Websense Web Security versions 7.6.2 before Hotfix 12
Web Filter (affected versions not specified)
Web Security Gateway (affected versions not specified)
Web Security Gateway Anywhere (affected versions not specified)
Description
The Investigative Reports web interface in the TRITON management console allows remote attackers to execute commands via unspecified vectors.
Recommendations
For Websense Web Security version 7.1, apply Hotfix 109.
For Websense Web Security version 7.1.1, apply Hotfix 06.
For Websense Web Security version 7.5, apply Hotfix 78.
For Websense Web Security version 7.5.1, apply Hotfix 12.
For Websense Web Security version 7.6, apply Hotfix 24.
For Websense Web Security version 7.6.2, apply Hotfix 12.
At the moment, there is no information about a fix for Web Filter, Web Security Gateway, and Web Security Gateway Anywhere.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Triton
Web Filter
Web Security Gateway
Web Security Gateway Anywhere
Websense Web Security