CVE Database · CVE-2009-5131
CVSS v3.1
N/A
EPSS
1.43%
Published
Aug 26, 2012
Modified
Apr 28, 2026
Public PoC / Exploit
All weaponized →No public PoC or exploit code indexed for this CVE.
Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
The Receive Service in Websense Email Security before 7.1 does not recognize domain extensions in the blacklist, which allows remote attackers to bypass intended access restrictions and send e-mail messages via an SMTP session.
Weaknesses (CWE)
Affected Products (3)
References (2)