CVE-2007-6312: XSS
Cross-site scripting (XSS) vulnerability in the logon page in Web Reporting Tools portal in Websense Enterprise and Web Security Suite 6.3 allows remote attackers to inject arbitrary web script or HTML via the username field.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-6312?
CVE-2007-6312 is considered a medium severity vulnerability due to its ability to allow cross-site scripting attacks.
How do I fix CVE-2007-6312?
To fix CVE-2007-6312, users should upgrade to a patched version of Websense Enterprise, Web Security Suite, or Reporting Tools if available.
How does CVE-2007-6312 affect users?
CVE-2007-6312 can affect users by allowing attackers to inject malicious scripts through the logon page, potentially compromising user credentials.
Which software versions are affected by CVE-2007-6312?
CVE-2007-6312 affects versions 6.3 and 6.3.1 of Websense Enterprise, Web Security Suite, and Reporting Tools.
What type of vulnerability is CVE-2007-6312?
CVE-2007-6312 is a cross-site scripting (XSS) vulnerability that allows for the injection of arbitrary web scripts or HTML.