Vigil@nce - Websense Email Security: bypassing blacklists
September 2012 by Vigil@nce
This bulletin was written by Vigil@nce : http://vigilance.fr/offer
SYNTHESIS OF THE VULNERABILITY
An attacker can use a SMTP session with the EHLO 8BITMIME option,
in order to bypass sender-based blacklisting of Websense Email
Security.
Impacted products: Websense Email Security
Severity: 2/4
Creation date: 24/08/2012
DESCRIPTION OF THE VULNERABILITY
An attacker can use a SMTP session with the EHLO 8BITMIME option,
in order to bypass sender-based blacklisting of Websense Email
Security.
ACCESS TO THE COMPLETE VIGIL@NCE BULLETIN
http://vigilance.fr/vulnerability/Websense-Email-Security-bypassing-blacklists-11886