A password disclosure vulnerability in the Secure PDF eXchange (SPX) feature allows attackers with full email access to decrypt PDFs in Sophos Firewall version 19.5 MR3 (19.5.3) and older, if the password type is set to “Specified by sender”.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Sophos

Published: 2023-10-17T23:29:12.601Z

Updated: 2024-09-13T16:21:10.363Z

Reserved: 2023-10-12T05:55:23.384Z

Link: CVE-2023-5552

cve-icon Vulnrichment

Updated: 2024-08-02T07:59:44.981Z

cve-icon NVD

Status : Analyzed

Published: 2023-10-18T00:15:10.257

Modified: 2023-10-25T00:01:20.563

Link: CVE-2023-5552

cve-icon Redhat

No data.