4.3
CVSSv3

CVE-2022-48309

Published: 01/03/2023 Updated: 09/03/2023
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A CSRF vulnerability allows malicious websites to retrieve logs and technical support archives in Sophos Connect versions older than 2.2.90.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sophos connect

Github Repositories

Placing MSI for scripting

#Script written by Tech Eagles (Bristol, TN | Panama City, FL) Version: 15 #Author: Shaun Copas #Purpose: To upgrade Sophos Connect clients to version 22901104 (v22 MR1)per Sophos suggestion Older clients contain known vulnerabilities #For OS: Windows x64 and x86 #Known vulnerabilities in older clients: CVE-2022-48309, CVE-2022-48310, CVE-2022-4901 #Sophos Connect Upgrad