20060508 VSR Advisory: WebSense content filter bypass when deployed in conjunction with Cisco filtering devicesmailing list
http://lists.grok.org.uk/pipermail/full-disclosure/2006-May/045899.html CVE-2006-0515
Cisco - WebSense Content Filtering Bypass
Record summary
CVE-2006-0515 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Cisco PIX/ASA 7.1.x before 7.1(2) and 7.0.x before 7.0(5), PIX 6.3.x before 6.3.5(112), and FWSM 2.3.x before 2.3(4) and 3.x before 3.1(7), when used with Websense/N2H2, allows remote attackers to bypass HTTP access restrictions by splitting the GET method of an HTTP request into multiple packets, which prevents the request from being sent to Websense for inspection, aka bugs CSCsc67612, CSCsc68472, and CSCsd81734.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBCisco - WebSense Content Filtering BypassExploitDB exploitby George D. GalNot analyzed1 file
References
1220044Third-party advisory
http://secunia.com/advisories/20044 1016039vdb entry
http://securitytracker.com/id?1016039 1016040vdb entry
http://securitytracker.com/id?1016040 20060508 PIX/ASA/FWSM Websense/N2H2 Content Filter BypassVendor advisory
http://www.cisco.com/en/US/products/sw/netmgtsw/ps2032/tsd_products_security_response09186a00806824ec.html 25453vdb entry
http://www.osvdb.org/25453 20060508 VSR Advisory: WebSense content filter bypass when deployed in conjunction with Cisco filtering devicesmailing list
http://www.securityfocus.com/archive/1/433270/100/0/threaded 17883vdb entry
http://www.securityfocus.com/bid/17883 vsecurity.com
http://www.vsecurity.com/bulletins/advisories/2006/cisco-websense-bypass.txt ADV-2006-1738vdb entry
http://www.vupen.com/english/advisories/2006/1738 cisco-websense-content-filtering-bypass(26308)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/26308 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-0515