Cross-Site Scripting (XSS) Vulnerabilities in Websense Triton and V-Series Appliances

Cross-Site Scripting (XSS) Vulnerabilities in Websense Triton and V-Series Appliances

CVE-2015-2747 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

Multiple cross-site scripting (XSS) vulnerabilities in the data loss prevention (DLP) incident Forensics Preview in Websense Triton 7.8.3 and V-Series 7.7 appliances allow remote attackers to inject arbitrary web script or HTML via a crafted (1) email or (2) HTTP request, which triggers a DLP Policy.

Learn more about our Web App Pen Testing.