First published: Thu Mar 26 2015(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in the data loss prevention (DLP) incident Forensics Preview in Websense Triton 7.8.3 and V-Series 7.7 appliances allow remote attackers to inject arbitrary web script or HTML via a crafted (1) email or (2) HTTP request, which triggers a DLP Policy.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Websense Triton | =7.8.3 | |
Websense V-series Appliances | =7.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.