4.3
CVE-2010-5144
- EPSS 1.49%
- Veröffentlicht 23.08.2012 10:32:14
- Zuletzt bearbeitet 16.06.2026 23:26:10
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The ISAPI Filter plug-in in Websense Enterprise, Websense Web Security, and Websense Web Filter 6.3.3 and earlier, when used in conjunction with a Microsoft ISA or Microsoft Forefront TMG server, allows remote attackers to bypass intended filtering and monitoring activities for web traffic via an HTTP Via header.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Websense ≫ Websense Web Security Version6.3.0
Websense ≫ Websense Web Security Version6.3.1
Websense ≫ Websense Web Security Version6.3.3
Websense ≫ Websense Web Filter Version <= 6.3.3
Websense ≫ Websense Web Filter Version6.3.0
Websense ≫ Websense Web Filter Version6.3.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.49% | 0.707 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://archives.neohapsis.com/archives/fulldisclosure/2010-05/0376.html
http://mrhinkydink.blogspot.com/2010/05/websense-633-via-bypass.html
http://www.websense.com/support/article/t-kbarticle/Web-Security-Vulnerability-Microsoft-ISA-Server-Integrations