Sophos
Sophos Anti-virus: vulnerabilidades y CVE
Sophos Anti-virus tiene 12 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE12
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2014-2385 | Media (4.3) | 4.5% | — | 22 jul 2014 | Multiple cross-site scripting (XSS) vulnerabilities in the web UI in Sophos Anti-Virus for Linux before 9.6.1 allow local users to inject arbitrary web script or HTML via the (1) newListList:ExcludeFileOnExpression, (2)… |
| CVE-2010-2308 | Alta (7.2) | 1.2% | — | 16 jun 2010 | Unspecified vulnerability in the filter driver (savonaccessfilter.sys) in Sophos Anti-Virus before 7.6.20 allows local users to gain privileges via crafted arguments to the NtQueryAttributesFile function. |
| CVE-2008-6904 | Alta (10) | 11% | — | 6 ago 2009 | Multiple unspecified vulnerabilities in Sophos SAVScan 4.33.0 for Linux, and possibly other products and versions, allow remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary… |
| CVE-2008-6903 | Media (4.3) | 6.6% | — | 6 ago 2009 | Sophos Anti-Virus for Windows before 7.6.3, Anti-Virus for Windows NT/9x before 4.7.18, Anti-Virus for OS X before 4.9.18, Anti-Virus for Linux before 6.4.5, Anti-Virus for UNIX before 7.0.5, Anti-Virus for Unix and… |
| CVE-2008-5541 | Alta (9.3) | 7.6% | — | 12 dic 2008 | Sophos Anti-Virus 4.33.0, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the… |
| CVE-2008-1737 | Media (6.9) | 0.62% | — | 30 abr 2008 | Sophos Anti-Virus 7.0.5, and other 7.x versions, when Runtime Behavioural Analysis is enabled, allows local users to cause a denial of service (reboot with the product disabled) and possibly gain privileges via a zero… |
| CVE-2007-4512 | Media (4.3) | 4.8% | — | 10 sept 2007 | Cross-site scripting (XSS) vulnerability in Sophos Anti-Virus for Windows 6.x before 6.5.8 and 7.x before 7.0.1 allows remote attackers to inject arbitrary web script or HTML via an archive with a file that matches a… |
| CVE-2007-4577 | Alta (7.8) | 5.5% | — | 28 ago 2007 | Sophos Anti-Virus for Unix/Linux before 2.48.0 allows remote attackers to cause a denial of service (infinite loop) via a malformed BZip file that results in the creation of multiple Engine temporary files (aka a "BZip… |
| CVE-2007-4578 | Media (6.8) | 7.3% | — | 28 ago 2007 | Sophos Anti-Virus for Windows and for Unix/Linux before 2.48.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted UPX packed file, resulting from an "integer… |
| CVE-2006-5645 | Media (5) | 18% | — | 1 nov 2006 | Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11, when "Enabled scanning of archives" is set, allows remote attackers to cause a denial of service… |
| CVE-2006-5647 | Media (6.4) | 21% | — | 1 nov 2006 | Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11 allows remote attackers to cause a denial of service (memory corruption) and possibly execute… |
| CVE-2006-5646 | Media (5) | 18% | — | 1 nov 2006 | Heap-based buffer overflow in Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11, when archive scanning is enabled, allows remote attackers to… |
Otros productos de Sophos
Sophos Anti-virus · 36WEB Appliance · 18Firewall Firmware · 10Unified Threat Management Software · 9XG Firewall Firmware · 9Sophos Puremessage Anti-virus · 9Safeguard Easy Device Encryption Client · 8Sfos · 8Sophos Small Business Suite · 8Safeguard LAN Crypt Client · 7Safeguard Enterprise Client · 7Unified Threat Management · 6