Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sophos web appliance firmware vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2016-3968
Multiple cross-site scripting (XSS) vulnerabilities in Sophos Cyberoam CR100iNG UTM appliance with firmware 10.6.3 MR-1 build 503, CR35iNG UTM appliance with firmware 10.6.2 MR-1 build 383, and CR35iNG UTM appliance with firmware 10.6.2 Build 378 allow remote malicious users to i...
Sophos Cyberoam Cr100ing Utm Firmware 10.6.3 Mr-1 Build 503
Sophos Cyberoam Cr35ing Utm Firmware 10.6.2 Build 378
Sophos Cyberoam Cr35ing Utm Firmware 10.6.2 Mr-1 Build 383
NA
CVE-2014-2849
The Change Password dialog box (change_password) in Sophos Web Appliance prior to 3.8.2 allows remote authenticated users to change the admin user password via a crafted request.
Sophos Web Appliance Firmware 3.7.8
Sophos Web Appliance Firmware
Sophos Web Appliance Firmware 3.0.0
Sophos Web Appliance Firmware 3.0.1
Sophos Web Appliance Firmware 3.0.1.1
Sophos Web Appliance Firmware 3.0.2
Sophos Web Appliance Firmware 3.0.3
Sophos Web Appliance Firmware 3.0.4
Sophos Web Appliance Firmware 3.0.5
Sophos Web Appliance Firmware 3.0.5.1
Sophos Web Appliance Firmware 3.1.0
Sophos Web Appliance Firmware 3.1.0.1
Sophos Web Appliance Firmware 3.1.1
Sophos Web Appliance Firmware 3.1.2
Sophos Web Appliance Firmware 3.1.3
Sophos Web Appliance Firmware 3.1.4
Sophos Web Appliance Firmware 3.2.1
Sophos Web Appliance Firmware 3.2.2
Sophos Web Appliance Firmware 3.2.2.1
Sophos Web Appliance Firmware 3.2.3
Sophos Web Appliance Firmware 3.2.4
Sophos Web Appliance Firmware 3.2.5
1 EDB exploit
NA
CVE-2014-2850
The network interface configuration page (netinterface) in Sophos Web Appliance prior to 3.8.2 allows remote administrators to execute arbitrary commands via shell metacharacters in the address parameter.
Sophos Web Appliance Firmware 3.7.8
Sophos Web Appliance Firmware
Sophos Web Appliance Firmware 3.0.0
Sophos Web Appliance Firmware 3.0.1
Sophos Web Appliance Firmware 3.0.1.1
Sophos Web Appliance Firmware 3.0.2
Sophos Web Appliance Firmware 3.0.3
Sophos Web Appliance Firmware 3.0.4
Sophos Web Appliance Firmware 3.0.5
Sophos Web Appliance Firmware 3.0.5.1
Sophos Web Appliance Firmware 3.1.0
Sophos Web Appliance Firmware 3.1.0.1
Sophos Web Appliance Firmware 3.1.1
Sophos Web Appliance Firmware 3.1.2
Sophos Web Appliance Firmware 3.1.3
Sophos Web Appliance Firmware 3.1.4
Sophos Web Appliance Firmware 3.2.1
Sophos Web Appliance Firmware 3.2.2
Sophos Web Appliance Firmware 3.2.2.1
Sophos Web Appliance Firmware 3.2.3
Sophos Web Appliance Firmware 3.2.4
Sophos Web Appliance Firmware 3.2.5
1 EDB exploit
NA
CVE-2013-2642
Sophos Web Appliance prior to 3.7.8.2 allows (1) remote malicious users to execute arbitrary commands via shell metacharacters in the client-ip parameter to the Block page, when using the user_workstation variable in a customized template, and remote authenticated users to execut...
Sophos Web Appliance Firmware
Sophos Web Appliance -
1 EDB exploit
NA
CVE-2013-2641
Directory traversal vulnerability in patience.cgi in Sophos Web Appliance prior to 3.7.8.2 allows remote malicious users to read arbitrary files via the id parameter.
Sophos Web Appliance Firmware
Sophos Web Appliance -
1 EDB exploit
NA
CVE-2013-2643
Multiple cross-site scripting (XSS) vulnerabilities in Sophos Web Appliance prior to 3.7.8.2 allow remote malicious users to inject arbitrary web script or HTML via the (1) xss parameter in an allow action to rss.php, (2) msg parameter to end-user/errdoc.php, (3) h parameter to e...
Sophos Web Appliance Firmware
Sophos Web Appliance -
1 EDB exploit
NA
CVE-2013-4983
The get_referers function in /opt/ws/bin/sblistpack in Sophos Web Appliance prior to 3.7.9.1 and 3.8 prior to 3.8.1.1 allows remote malicious users to execute arbitrary commands via shell metacharacters in the domain parameter to end-user/index.php.
Sophos Web Appliance Firmware 3.7.8
Sophos Web Appliance Firmware
Sophos Web Appliance Firmware 3.0.0
Sophos Web Appliance Firmware 3.0.1
Sophos Web Appliance Firmware 3.0.1.1
Sophos Web Appliance Firmware 3.0.2
Sophos Web Appliance Firmware 3.0.3
Sophos Web Appliance Firmware 3.0.4
Sophos Web Appliance Firmware 3.0.5
Sophos Web Appliance Firmware 3.0.5.1
Sophos Web Appliance Firmware 3.1.0
Sophos Web Appliance Firmware 3.1.0.1
Sophos Web Appliance Firmware 3.1.1
Sophos Web Appliance Firmware 3.1.2
Sophos Web Appliance Firmware 3.1.3
Sophos Web Appliance Firmware 3.1.4
Sophos Web Appliance Firmware 3.2.1
Sophos Web Appliance Firmware 3.2.2
Sophos Web Appliance Firmware 3.2.2.1
Sophos Web Appliance Firmware 3.2.3
Sophos Web Appliance Firmware 3.2.4
Sophos Web Appliance Firmware 3.2.5
2 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-0044
client side
CVE-2021-47601
deserialization
CVE-2024-34994
encryption
CVE-2021-47609
CVE-2024-37079
CVE-2024-38608
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started