Vulnerability Description
Websense, when configured to permit access to the dynamic content category, allows local users to bypass intended blocking of the Uncategorized category by appending a "/?" sequence to a URL.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Websense | Websense | All versions |
References
- http://www.osvdb.org/25211
- http://www.securityfocus.com/archive/1/431600/100/0/threaded
- http://www.securityfocus.com/archive/1/431685/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25980
- http://www.osvdb.org/25211
- http://www.securityfocus.com/archive/1/431600/100/0/threaded
- http://www.securityfocus.com/archive/1/431685/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25980
FAQ
What is CVE-2006-2035?
CVE-2006-2035 is a vulnerability with a CVSS score of 3.7 (LOW). Websense, when configured to permit access to the dynamic content category, allows local users to bypass intended blocking of the Uncategorized category by appending a "/?" sequence to a URL.
How severe is CVE-2006-2035?
CVE-2006-2035 has been rated LOW with a CVSS base score of 3.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-2035?
Check the references section above for vendor advisories and patch information. Affected products include: Websense Websense.