A password disclosure vulnerability in the Secure PDF eXchange (SPX) feature allows attackers with full email access to decrypt PDFs in Sophos Firewall version 19.5 MR3 (19.5.3) and older, if the password type is set to “Specified by sender”.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2023-57852 | A password disclosure vulnerability in the Secure PDF eXchange (SPX) feature allows attackers with full email access to decrypt PDFs in Sophos Firewall version 19.5 MR3 (19.5.3) and older, if the password type is set to “Specified by sender”. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: Sophos
Published:
Updated: 2024-09-13T16:21:10.363Z
Reserved: 2023-10-12T05:55:23.384Z
Link: CVE-2023-5552

Updated: 2024-08-02T07:59:44.981Z

Status : Modified
Published: 2023-10-18T00:15:10.257
Modified: 2024-11-21T08:41:59.903
Link: CVE-2023-5552

No data.

No data.