Lucene search

K
cvelistMitreCVELIST:CVE-2012-4604
HistoryAug 23, 2012 - 10:00 a.m.

CVE-2012-4604

2012-08-2310:00:00
mitre
www.cve.org
4
triton management
authentication bypass
arbitrary reports
websense web security

AI Score

6.9

Confidence

Low

EPSS

0.004

Percentile

75.1%

The TRITON management console in Websense Web Security before 7.6 Hotfix 24 allows remote attackers to bypass authentication and read arbitrary reports via a crafted uid field, in conjunction with a crafted userRoles field, in a cookie, as demonstrated by a request to explorer_wse/favorites.exe.

AI Score

6.9

Confidence

Low

EPSS

0.004

Percentile

75.1%

Related for CVELIST:CVE-2012-4604