CVE-2015-2762: Infoleak
Published Mar 27, 2015
·Updated
Websense TRITON AP-WEB before 8.0.0 allows remote attackers to enumerate Windows domain user accounts via vectors related to HTTP authentication.
Affected Software
1 affected component
Websense Triton Ap Web<=7.8.3
Event History
Mar 27, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2762?
CVE-2015-2762 is classified as a medium severity vulnerability that allows remote users to enumerate Windows domain user accounts.
2
How do I fix CVE-2015-2762?
To fix CVE-2015-2762, upgrade Websense TRITON AP-WEB to version 8.0.0 or higher.
3
What versions of Websense TRITON AP-WEB are affected by CVE-2015-2762?
CVE-2015-2762 affects all versions of Websense TRITON AP-WEB prior to 8.0.0, including version 7.8.3 and earlier.
4
What kind of attack does CVE-2015-2762 allow?
CVE-2015-2762 allows remote attackers to enumerate Windows domain user accounts through specific vectors related to HTTP authentication.
5
Is CVE-2015-2762 a local or remote vulnerability?
CVE-2015-2762 is a remote vulnerability, as it can be exploited by attackers accessing the affected software over a network.