An authentication bypass vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v18.5 MR3 and older.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HSophos Sfos
OSSophos≤ 18.5.3
CISA KEV — detailsi
- Vendori
- Sophos
- Producti
- Firewall
- Added to KEVi
- March 31, 2022
- Remediation deadline (US Federal)i
- April 21, 2022(overdue)
Apply updates per vendor instructions.
An authentication bypass vulnerability in User Portal and Webadmin of Sophos Firewall allows for remote code execution.
Related vulnerabilities
SQL Injection z RCE w Sophos XG Firewall — eksfiltracja danych
Heap-based buffer overflow w Sophos XG Firewall — potencjalny RCE
A shell escape vulnerability in /webconsole/Controller in Admin Portal of Sophos XG firewall 17.0.8 MR-8 allow...
A shell escape vulnerability in /webconsole/APIController in the API Configuration component of Sophos XG fire...
SQL injection vulnerability in AccountStatus.jsp in Admin Portal of Sophos XG firewall 17.0.8 MR-8 allow remot...