Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Websense

First CVE: Apr 26, 2006Active for: 20 yearsTotal CVEs: 49
21.8
VTI Score
Low

Websense provides a portfolio of network security and content-filtering appliances, including V-Series endpoints and web-filtering solutions, that operate as chokepoints in enterprise traffic management. The vendor's vulnerability exposure is modestly represented in the landscape and concentrates across its filtering and inspection products through weakness classes including cross-site scripting, information disclosure, and memory-buffer handling issues—patterns typical of inspection-oriented appliances that parse and process untrusted content at scale. A moderate share of Websense vulnerabilities acquire public exploit code, reflecting the appeal of internet-deployed security appliances as targets for reconnaissance and bypass. Defenders should monitor this vendor's releases for its filtering and gateway products and treat discovered instances as candidates for timely remediation; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
49
Total CVEs
More Total CVEs than 98% of tracked vendors
0.2
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 2% of tracked vendors
5.0
Avg CVSS Score
Higher Avg CVSS Score than 10% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Websense over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 26, 2006
20 years ago
Most Recent CVE
Nov 6, 2017
3,182 days ago

Products(25 total)

Top CVEs

Signals from CVEs in this vendor scope (49 CVEs).

49 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2015-2746MEDIUM
The network diagnostics tool (CommandLineServlet) in the Appliance Manager command line utility (CLU) in Websense TRITON 7.8.3 and V-Series appliances before 7.8.4 Hotfix 02 allows
Mar 26, 20156.541NOYES
CVE-2009-3749MEDIUM
The Web Administrator service (STEMWADM.EXE) in Websense Personal Email Manager 7.1 before Hotfix 4 and Email Security 7.1 before Hotfix 4 allows remote attackers to cause a denial
Oct 22, 20095.025NOYES
CVE-2015-2767HIGH
Unspecified vulnerability in Websense TRITON AP-EMAIL before 8.0.0 has unknown impact and attack vectors, related to "Autocomplete Enabled."
Mar 27, 201510.024NONO
CVE-2015-2763HIGH
Unspecified vulnerability in Websense TRITON AP-EMAIL before 8.0.0 has unknown impact and attack vectors, related to port 17703.
Mar 27, 201510.024NONO
CVE-2012-2984MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in monitor/m_overview.ink in Websense Content Gateway before 7.7.3 allow remote attackers to inject arbitrary web script or HTML
Aug 24, 20124.324NOYES
CVE-2017-11177HIGH
TRITON AP-EMAIL 8.2 before 8.2 IB does not properly restrict file access in an unspecified directory.
Nov 6, 20177.523NONO
CVE-2011-5102HIGH
The Investigative Reports web interface in the TRITON management console in Websense Web Security 7.1 before Hotfix 109, 7.1.1 before Hotfix 06, 7.5 before Hotfix 78, 7.5.1 before
Aug 23, 20127.523NONO
CVE-2009-3748MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in the Web Administrator in Websense Personal Email Manager 7.1 before Hotfix 4 and Email Security 7.1 before Hotfix 4 allow rem
Oct 22, 20094.322NOYES
CVE-2012-4605MEDIUM
The default configuration of the SMTP component in Websense Email Security 6.1 through 7.3 enables weak SSL ciphers in the "SurfControl plc\SuperScout Email Filter\SMTP" registry k
Aug 23, 20125.020NONO
CVE-2007-6312MEDIUM
Cross-site scripting (XSS) vulnerability in the logon page in Web Reporting Tools portal in Websense Enterprise and Web Security Suite 6.3 allows remote attackers to inject arbitra
Dec 11, 20074.320NONO
View all 49 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products49 CVEs
8%
82%
10%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network1 (2.0%)
Unknown48 (98.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (2.0%)
High0 (0.0%)
Unknown48 (98.0%)
User Interaction
None1 (2.0%)
Unknown48 (98.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None1 (2.0%)
Unknown48 (98.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (49 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
4 CVEs
8.2% of CVEs· 76th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Websense.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Websense — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Websense's Products

View all 2 CNAs →

Top CWEs