Sophos XG Firewall Firmware 18.0 MR1

CPE Details

Sophos XG Firewall Firmware 18.0 MR1
18.0
2020-08-12
18h40 +00:00
2020-08-12
18h40 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:o:sophos:xg_firewall_firmware:18.0:mr1:*:*:*:*:*:*

Informations

Vendor

sophos

Product

xg_firewall_firmware

Version

18.0

Update

mr1

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2022-3226 2022-12-01 00h00 +00:00 An OS command injection vulnerability allows admins to execute code via SSL VPN configuration uploads in Sophos Firewall releases older than version 19.5 GA.
7.2
Haute
CVE-2022-3696 2022-12-01 00h00 +00:00 A post-auth code injection vulnerability allows admins to execute code in Webadmin of Sophos Firewall releases older than version 19.5 GA.
7.2
Haute
CVE-2022-3709 2022-12-01 00h00 +00:00 A stored XSS vulnerability allows admin to super-admin privilege escalation in the Webadmin import group wizard of Sophos Firewall releases older than version 19.5 GA.
8.4
Haute
CVE-2022-3710 2022-12-01 00h00 +00:00 A post-auth read-only SQL injection vulnerability allows API clients to read non-sensitive configuration database contents in the API controller of Sophos Firewall releases older than version 19.5 GA.
2.7
Bas
CVE-2022-3711 2022-12-01 00h00 +00:00 A post-auth read-only SQL injection vulnerability allows users to read non-sensitive configuration database contents in the User Portal of Sophos Firewall releases older than version 19.5 GA.
4.3
Moyen
CVE-2022-3713 2022-12-01 00h00 +00:00 A code injection vulnerability allows adjacent attackers to execute code in the Wifi controller of Sophos Firewall releases older than version 19.5 GA.
8.8
Haute
CVE-2020-17352 2020-08-07 17h50 +00:00 Two OS command injection vulnerabilities in the User Portal of Sophos XG Firewall through 2020-08-05 potentially allow an authenticated attacker to remotely execute arbitrary code.
8.8
Haute