Description
A post-auth read-only SQL injection vulnerability allows users to read non-sensitive configuration database contents in the User Portal of Sophos Firewall releases older than version 19.5 GA.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-43068 | A post-auth read-only SQL injection vulnerability allows users to read non-sensitive configuration database contents in the User Portal of Sophos Firewall releases older than version 19.5 GA. |
References
History
Wed, 23 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Sophos
Published:
Updated: 2025-04-23T15:14:27.550Z
Reserved: 2022-10-27T00:00:00.000Z
Link: CVE-2022-3711
Updated: 2024-08-03T01:20:57.113Z
Status : Modified
Published: 2022-12-01T18:15:10.503
Modified: 2025-04-23T16:15:24.810
Link: CVE-2022-3711
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD