Show filters
162 Total Results
Displaying 141-150 of 162
Sort by:
Attacker Value
Unknown

CVE-2013-5537

Disclosure Date: October 24, 2013 (last updated October 05, 2023)
The web framework on Cisco Web Security Appliance (WSA), Email Security Appliance (ESA), and Content Security Management Appliance (SMA) devices does not properly manage the state of HTTP and HTTPS sessions, which allows remote attackers to cause a denial of service (management GUI outage) via multiple TCP connections, aka Bug IDs CSCuj59411, CSCuf89818, and CSCuh05635.
0
Attacker Value
Unknown

CVE-2013-3395

Disclosure Date: July 02, 2013 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in the web framework on Cisco IronPort Web Security Appliance (WSA) devices, Email Security Appliance (ESA) devices, and Content Security Management Appliance (SMA) devices allows remote attackers to hijack the authentication of arbitrary users, aka Bug IDs CSCuh70263, CSCuh70323, and CSCuh26634.
0
Attacker Value
Unknown

CVE-2012-4014

Disclosure Date: September 25, 2012 (last updated October 05, 2023)
Unspecified vulnerability in McAfee Email Anti-virus (formerly WebShield SMTP) allows remote attackers to cause a denial of service via unknown vectors.
0
Attacker Value
Unknown

CVE-2009-5131

Disclosure Date: August 26, 2012 (last updated October 05, 2023)
The Receive Service in Websense Email Security before 7.1 does not recognize domain extensions in the blacklist, which allows remote attackers to bypass intended access restrictions and send e-mail messages via an SMTP session.
0
Attacker Value
Unknown

CVE-2009-5130

Disclosure Date: August 26, 2012 (last updated October 05, 2023)
The Rules Service in Websense Email Security before 7.1 allows remote attackers to cause a denial of service (service crash) via an attachment with a crafted size.
0
Attacker Value
Unknown

CVE-2012-4605

Disclosure Date: August 23, 2012 (last updated October 04, 2023)
The default configuration of the SMTP component in Websense Email Security 6.1 through 7.3 enables weak SSL ciphers in the "SurfControl plc\SuperScout Email Filter\SMTP" registry key, which makes it easier for remote attackers to obtain sensitive information by sniffing the network and then conducting a brute-force attack against encrypted session data.
0
Attacker Value
Unknown

CVE-2009-5121

Disclosure Date: August 23, 2012 (last updated October 04, 2023)
Websense Email Security 7.1 before Hotfix 4 allows remote attackers to bypass the sender-based blacklist by using the 8BITMIME EHLO keyword in the SMTP session.
0
Attacker Value
Unknown

CVE-2009-5122

Disclosure Date: August 23, 2012 (last updated October 04, 2023)
The Personal Email Manager component in Websense Email Security before 7.2 allows remote attackers to obtain potentially sensitive information from the JBoss status page via an unspecified query.
0
Attacker Value
Unknown

CVE-2012-4585

Disclosure Date: August 22, 2012 (last updated October 04, 2023)
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to read arbitrary files via a crafted URL.
0
Attacker Value
Unknown

CVE-2012-4581

Disclosure Date: August 22, 2012 (last updated October 04, 2023)
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, does not disable the server-side session token upon the closing of the Management Console/Dashboard, which makes it easier for remote attackers to hijack sessions by capturing a session cookie and then modifying the response to a login attempt, related to a "Logout Failure" issue.
0