CVE-2009-3749: Medium severity websense triton ap email vulnerability
The Web Administrator service (STEMWADM.EXE) in Websense Personal Email Manager 7.1 before Hotfix 4 and Email Security 7.1 before Hotfix 4 allows remote attackers to cause a denial of service (crash) by sending a HTTP GET request to TCP port 8181 and closing the socket before the service can send a response.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3749?
CVE-2009-3749 is classified as a denial of service vulnerability that can disrupt services.
How do I fix CVE-2009-3749?
To mitigate CVE-2009-3749, apply Hotfix 4 for Websense Personal Email Manager version 7.1 and Email Security version 7.1.
What services are impacted by CVE-2009-3749?
CVE-2009-3749 affects the Web Administrator service associated with Websense Personal Email Manager and Email Security.
Can CVE-2009-3749 be exploited remotely?
Yes, CVE-2009-3749 can be exploited remotely by sending a specific HTTP GET request.
What versions of software are vulnerable to CVE-2009-3749?
Websense Personal Email Manager 7.1 and Email Security 7.1 before Hotfix 4 are vulnerable to CVE-2009-3749.