İçeriğe atla
Noroxi

sophos kayıtları

sophos üreticisine ait 170 yayımlanmış kayıt.

Bug bounty kapsamı

Ürünün üreticisi herkese açık bir programda görünüyor. Eşleşme ad üzerinden yapıldı; kapsam metnini programda doğrulayın.

Tüm kayıtlar

170 kayıt
  • A pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance older than version 4.3.10.4 allows execution

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    sophos · web appliance4 Nis 2023

  • An authentication bypass vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    sophos · sfos25 Mar 2022

  • A code injection vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v19.0 MR1

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %99

    sophos · firewall23 Eyl 2022

  • A remote code execution vulnerability exists in the WebAdmin of Sophos SG UTM before v9.705 MR5, v9.607 MR7, and v9.511 MR11

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %97

    sophos · unified threat management25 Eyl 2020

  • A SQL injection issue was found in SFOS 17.0, 17.1, 17.5, and 18.0 before 2020-04-25 on Sophos XG Firewall devices, as exploited in the wild

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %42

    sophos · sfos27 Nis 2020

  • CVE-2020-15069
    72Bu hafta

    Sophos XG Firewall 17.x through v17.5 MR12 allows a Buffer Overflow and remote code execution via the HTTP/S Bookmarks feature for clientles

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %11

    sophos · xg firewall firmware29 Haz 2020

  • CVE-2020-29574
    70Bu hafta

    An SQL injection vulnerability in the WebAdmin of Cyberoam OS through 2020-12-04 allows unauthenticated attackers to execute arbitrary SQL s

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %5

    sophos · cyberoamos11 Ara 2020

  • CVE-2013-4983
    67Bu hafta

    The get_referers function in /opt/ws/bin/sblistpack in Sophos Web Appliance before 3.7.9.1 and 3.8 before 3.8.1.1 allows remote attackers to

    KritikCVSS 10,0SilahlaştırılmışEPSS %90

    sophos · web appliance firmware10 Eyl 2013

  • CVE-2015-7547
    59Planlayın

    Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc

    YüksekCVSS 8,1Kavram kanıtıEPSS %91

    gnu · glibc18 Şub 2016

  • CVE-2014-2849
    52Planlayın

    The Change Password dialog box (change_password) in Sophos Web Appliance before 3.8.2 allows remote authenticated users to change the admin

    YüksekCVSS 8,5SilahlaştırılmışEPSS %60

    sophos · web appliance firmware11 Nis 2014

  • CVE-2015-8605
    51Planlayın

    ISC DHCP 4.x before 4.1-ESV-R12-P1, 4.2.x, and 4.3.x before 4.3.3-P1 allows remote attackers to cause a denial of service (application crash

    OrtaCVSS 6,5İstismar yokEPSS %83

    isc · dhcp14 Oca 2016

  • CVE-2014-2850
    51Planlayın

    The network interface configuration page (netinterface) in Sophos Web Appliance before 3.8.2 allows remote administrators to execute arbitra

    YüksekCVSS 8,5SilahlaştırılmışEPSS %58

    sophos · web appliance firmware11 Nis 2014

  • CVE-2004-0932
    49Planlayın

    McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4397 October 6th 2004 allows remote attac

    YüksekCVSS 7,5Kavram kanıtıEPSS %63

    ca · etrust antivirus27 Oca 2005

  • CVE-2018-16117
    48Planlayın

    A shell escape vulnerability in /webconsole/Controller in Admin Portal of Sophos XG firewall 17.0.8 MR-8 allow remote authenticated attacker

    YüksekCVSS 8,8İstismar yokEPSS %44

    sophos · sfos20 Haz 2019

  • CVE-2012-1456
    47Planlayın

    The TAR file parser in AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.

    OrtaCVSS 4,3İstismar yokEPSS %100

    avg · avg anti-virus21 Mar 2012

  • CVE-2012-1459
    47Planlayın

    The TAR file parser in AhnLab V3 Internet Security 2011.01.18.00, Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8

    OrtaCVSS 4,3İstismar yokEPSS %100

    ahnlab · v3 internet security21 Mar 2012

  • CVE-2012-1446
    47Planlayın

    The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, AVEngine 20101.3.0.103 in Syman

    OrtaCVSS 4,3İstismar yokEPSS %100

    ca · etrust vet antivirus21 Mar 2012

  • CVE-2012-1443
    47Planlayın

    The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 2010

    OrtaCVSS 4,3İstismar yokEPSS %100

    cat · quick heal21 Mar 2012

  • CVE-2012-1442
    47Planlayın

    The ELF file parser in Quick Heal (aka Cat QuickHeal) 11.00, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwas

    OrtaCVSS 4,3İstismar yokEPSS %99

    cat · quick heal21 Mar 2012

  • CVE-2012-1453
    46Planlayın

    The CAB file parser in Dr.Web 5.0.2.03300, Trend Micro HouseCall 9.120.0.1004, Kaspersky Anti-Virus 7.0.0.125, Sophos Anti-Virus 4.61.0, Tre

    OrtaCVSS 4,3İstismar yokEPSS %98

    ca · etrust vet antivirus21 Mar 2012

  • CVE-2012-1430
    46Planlayın

    The ELF file parser in Bitdefender 7.2, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.0, McAfee Anti-Virus Scanning E

    OrtaCVSS 4,3İstismar yokEPSS %96

    bitdefender · bitdefender21 Mar 2012

  • CVE-2012-1431
    46Planlayın

    The ELF file parser in Bitdefender 7.2, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, F-Sec

    OrtaCVSS 4,3İstismar yokEPSS %96

    bitdefender · bitdefender21 Mar 2012

  • CVE-2012-1461
    45Planlayın

    The Gzip file parser in AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Command Antivirus 5.2.11.5, Emsisoft Anti-Malware 5.1.0.1, F-Secure Ant

    OrtaCVSS 4,3İstismar yokEPSS %92

    anti-virus · vba3221 Mar 2012

  • CVE-2016-0777
    45Planlayın

    The resend_bytes function in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows remote servers to obtain sensit

    OrtaCVSS 6,5Kavram kanıtıEPSS %63

    sophos · unified threat management software14 Oca 2016

  • CVE-2017-6182
    44Planlayın

    In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machine's interface responsible for generating reports was vulnerable to remo

    KritikCVSS 9,8Kavram kanıtıEPSS %17

    sophos · web appliance30 Mar 2017