Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2008-4646

Disclosure Date: October 22, 2008 (last updated October 04, 2023)
The Websense Reporter Module in Websense Enterprise 6.3.2 stores the SQL database system administrator password in plaintext in CreateDbInstall.log, which allows local users to gain privileges to the database.
0
Attacker Value
Unknown

CVE-2007-6511

Disclosure Date: December 21, 2007 (last updated October 04, 2023)
Websense Enterprise 6.3.1 allows remote attackers to bypass content filtering by visiting http URLs with a (1) RealPlayer G2, (2) MSMSGS, or (3) StoneHttpAgent User-Agent header, which results in a Non-HTTP categorization.
0
Attacker Value
Unknown

CVE-2007-6312

Disclosure Date: December 11, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the logon page in Web Reporting Tools portal in Websense Enterprise and Web Security Suite 6.3 allows remote attackers to inject arbitrary web script or HTML via the username field.
0