← Back

CVE-2012-4605

nvd nist
Published: Aug 23, 2012Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The default configuration of the SMTP component in Websense Email Security 6.1 through 7.3 enables weak SSL ciphers in the "SurfControl plc\SuperScout Email Filter\SMTP" registry key, which makes it easier for remote attackers to obtain sensitive information by sniffing the network and then conducting a brute-force attack against encrypted session data.

Affected (5)

1 product
Websense Email Security
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Websense
Version 6.1
Version 6.1 sp1
Version 7.0
Version 7.1
Version 7.2

Timeline

No history available yet.