Show filters
223 Total Results
Displaying 171-180 of 223
Sort by:
Attacker Value
Unknown
CVE-2012-4014
Disclosure Date: September 25, 2012 (last updated October 05, 2023)
Unspecified vulnerability in McAfee Email Anti-virus (formerly WebShield SMTP) allows remote attackers to cause a denial of service via unknown vectors.
0
Attacker Value
Unknown
CVE-2009-5131
Disclosure Date: August 26, 2012 (last updated October 05, 2023)
The Receive Service in Websense Email Security before 7.1 does not recognize domain extensions in the blacklist, which allows remote attackers to bypass intended access restrictions and send e-mail messages via an SMTP session.
0
Attacker Value
Unknown
CVE-2009-5130
Disclosure Date: August 26, 2012 (last updated October 05, 2023)
The Rules Service in Websense Email Security before 7.1 allows remote attackers to cause a denial of service (service crash) via an attachment with a crafted size.
0
Attacker Value
Unknown
CVE-2012-4605
Disclosure Date: August 23, 2012 (last updated October 04, 2023)
The default configuration of the SMTP component in Websense Email Security 6.1 through 7.3 enables weak SSL ciphers in the "SurfControl plc\SuperScout Email Filter\SMTP" registry key, which makes it easier for remote attackers to obtain sensitive information by sniffing the network and then conducting a brute-force attack against encrypted session data.
0
Attacker Value
Unknown
CVE-2009-5121
Disclosure Date: August 23, 2012 (last updated October 04, 2023)
Websense Email Security 7.1 before Hotfix 4 allows remote attackers to bypass the sender-based blacklist by using the 8BITMIME EHLO keyword in the SMTP session.
0
Attacker Value
Unknown
CVE-2009-5122
Disclosure Date: August 23, 2012 (last updated October 04, 2023)
The Personal Email Manager component in Websense Email Security before 7.2 allows remote attackers to obtain potentially sensitive information from the JBoss status page via an unspecified query.
0
Attacker Value
Unknown
CVE-2012-4585
Disclosure Date: August 22, 2012 (last updated October 04, 2023)
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to read arbitrary files via a crafted URL.
0
Attacker Value
Unknown
CVE-2012-4581
Disclosure Date: August 22, 2012 (last updated October 04, 2023)
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, does not disable the server-side session token upon the closing of the Management Console/Dashboard, which makes it easier for remote attackers to hijack sessions by capturing a session cookie and then modifying the response to a login attempt, related to a "Logout Failure" issue.
0
Attacker Value
Unknown
CVE-2012-4583
Disclosure Date: August 22, 2012 (last updated October 04, 2023)
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, allows remote authenticated users to obtain the session tokens of arbitrary users by navigating within the Dashboard.
0
Attacker Value
Unknown
CVE-2012-4584
Disclosure Date: August 22, 2012 (last updated October 04, 2023)
McAfee Email and Web Security (EWS) 5.x before 5.5 Patch 6 and 5.6 before Patch 3, and McAfee Email Gateway (MEG) 7.0 before Patch 1, does not properly encrypt system-backup data, which makes it easier for remote authenticated users to obtain sensitive information by reading a backup file, as demonstrated by obtaining password hashes.
0