CVE-2009-5131: Medium severity websense triton ap email vulnerability
The Receive Service in Websense Email Security before 7.1 does not recognize domain extensions in the blacklist, which allows remote attackers to bypass intended access restrictions and send e-mail messages via an SMTP session.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-5131?
CVE-2009-5131 has a medium severity rating as it allows remote attackers to bypass email access restrictions.
How do I fix CVE-2009-5131?
To fix CVE-2009-5131, upgrade Websense Email Security to version 7.1 or later to ensure proper domain extension recognition.
What attack vectors does CVE-2009-5131 expose?
CVE-2009-5131 exposes the attack vector of unauthorized email delivery through SMTP sessions by bypassing blacklisted domains.
Which versions of Websense Email Security are affected by CVE-2009-5131?
CVE-2009-5131 affects Websense Email Security versions 6.1 and 6.1-sp1, as well as all versions up to 7.0.
Can CVE-2009-5131 lead to data breaches?
Yes, CVE-2009-5131 can potentially lead to data breaches by allowing unauthorized email messages to be sent.