6.9
CVSSv2

CVE-2014-2005

Published: 25/06/2014 Updated: 27/09/2019
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
CVSS v3 Base Score: 6.8 | Impact Score: 5.9 | Exploitability Score: 0.9
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Sophos Disk Encryption (SDE) 5.x in Sophos Enterprise Console (SEC) 5.x prior to 5.2.2 does not enforce intended authentication requirements for a resume action from sleep mode, which allows physically proximate malicious users to obtain desktop access by leveraging the absence of a login screen.

Vulnerable Product Search on Vulmon Subscribe to Product

sophos enterprise console 5.2

sophos enterprise console

sophos enterprise console 5.2.1

sophos enterprise console 5.1