CVE-2015-2769: CSRF
Published Mar 27, 2015
·Updated
Multiple cross-site request forgery (CSRF) vulnerabilities in the Personal Email Manager (PEM) in Websense TRITON AP-EMAIL before 8.0.0 allow remote attackers to hijack the authentication of unspecified victims via unknown vectors.
Affected Software
1 affected component
Websense Triton Ap Email<=7.8.3
Event History
Mar 27, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2769?
CVE-2015-2769 is classified as a high-severity vulnerability due to its potential for unauthorized access and authentication hijacking.
2
How do I fix CVE-2015-2769?
To mitigate CVE-2015-2769, upgrade to Websense TRITON AP-EMAIL version 8.0.0 or later.
3
Who is affected by CVE-2015-2769?
CVE-2015-2769 affects users of Websense TRITON AP-EMAIL versions prior to 8.0.0.
4
What type of vulnerability is CVE-2015-2769?
CVE-2015-2769 is classified as a cross-site request forgery (CSRF) vulnerability.
5
Can CVE-2015-2769 be exploited remotely?
Yes, CVE-2015-2769 can be exploited remotely by attackers to hijack user authentication.