CVE-2015-2771: Infoleak
Published Mar 27, 2015
·Updated
The Mail Server in Websense TRITON AP-EMAIL and V-Series appliances before 8.0.0 uses plaintext credentials, which allows remote attackers to obtain sensitive information via unspecified vectors.
Affected Software
2 affected components
Websense Triton Ap Email<=7.8.3
Websense V-Series appliances<=7.7
Event History
Mar 27, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2771?
CVE-2015-2771 is considered a high severity vulnerability due to its potential for sensitive information exposure.
2
How do I fix CVE-2015-2771?
To fix CVE-2015-2771, upgrade to Websense TRITON AP-EMAIL version 8.0.0 or later.
3
What specifically is compromised in CVE-2015-2771?
CVE-2015-2771 compromises the security of plaintext credentials used by the Mail Server in affected Websense products.
4
Which versions are affected by CVE-2015-2771?
CVE-2015-2771 affects Websense TRITON AP-EMAIL versions up to 7.8.3 and V-Series Appliances up to 7.7.
5
Can CVE-2015-2771 be exploited remotely?
Yes, CVE-2015-2771 can be exploited remotely by attackers to obtain sensitive information.