4.3
CVSSv3

CVE-2022-3711

Published: 01/12/2022 Updated: 09/12/2022
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A post-auth read-only SQL injection vulnerability allows users to read non-sensitive configuration database contents in the User Portal of Sophos Firewall releases older than version 19.5 GA.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sophos xg firewall firmware