A password disclosure vulnerability in the Secure PDF eXchange (SPX) feature allows attackers with full email access to decrypt PDFs in Sophos Firewall version 19.5 MR3 (19.5.3) and older, if the password type is set to “Specified by sender”.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Sophos
Published: 2023-10-17T23:29:12.601Z
Updated: 2024-09-13T16:21:10.363Z
Reserved: 2023-10-12T05:55:23.384Z
Link: CVE-2023-5552
Vulnrichment
Updated: 2024-08-02T07:59:44.981Z
NVD
Status : Modified
Published: 2023-10-18T00:15:10.257
Modified: 2024-11-21T08:41:59.903
Link: CVE-2023-5552
Redhat
No data.