Sophos
Sophos Unified Threat Management Software: vulnerabilidades y CVE
Sophos Unified Threat Management Software tiene 9 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2016-7442 | Media (4.4) | 0.54% | — | 3 oct 2016 | The Frontend component in Sophos UTM with firmware 9.405-5 and earlier allows local administrators to obtain sensitive password information by reading the "value" field of the proxy user settings in "system settings /… |
| CVE-2016-7397 | Media (4.4) | 0.54% | — | 3 oct 2016 | The Frontend component in Sophos UTM with firmware 9.405-5 and earlier allows local administrators to obtain sensitive password information by reading the "value" field of the SMTP user settings in the notifications… |
| CVE-2015-7547 | Alta (8.1) | 91% | — | 18 feb 2016 | Multiple stack-based buffer overflows in the (1) send_dg and (2) send_vc functions in the libresolv library in the GNU C Library (aka glibc or libc6) before 2.23 allow remote attackers to cause a denial of service… |
| CVE-2016-2046 | Media (6.1) | 2.8% | — | 17 feb 2016 | Cross-site scripting (XSS) vulnerability in the UserPortal page in SOPHOS UTM before 9.353 allows remote attackers to inject arbitrary web script or HTML via the lang parameter. |
| CVE-2016-0778 | Alta (8.1) | 21% | — | 14 ene 2016 | The (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy and forward options are enabled, do not properly maintain connection… |
| CVE-2016-0777 | Media (6.5) | 63% | — | 14 ene 2016 | The resend_bytes function in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows remote servers to obtain sensitive information from process memory by requesting transmission of an entire… |
| CVE-2014-2537 | Alta (7.8) | 3.1% | — | 18 mar 2014 | Memory leak in the TCP stack in the kernel in Sophos UTM before 9.109 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors. |
| CVE-2013-5932 | Alta (10) | 5.4% | — | 23 sept 2013 | Unspecified vulnerability in WebAdmin in Sophos UTM (aka Astaro Security Gateway) before 9.105 has unknown impact and attack vectors. |
| CVE-2012-3238 | Media (4.3) | 3.5% | — | 9 jul 2012 | Cross-site scripting (XSS) vulnerability in the Backup/Restore component in WebAdmin in Astaro Security Gateway before 8.305 allows remote attackers to inject arbitrary web script or HTML via the "Comment (optional)"… |
Otros productos de Sophos
Sophos Anti-virus · 36WEB Appliance · 18Anti-virus · 12Firewall Firmware · 10Sophos Puremessage Anti-virus · 9XG Firewall Firmware · 9Safeguard Easy Device Encryption Client · 8Sfos · 8Sophos Small Business Suite · 8Safeguard LAN Crypt Client · 7Safeguard Enterprise Client · 7Unified Threat Management · 6