Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hjh6-cq5x-wfcq

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

The Frontend component in Sophos UTM with firmware 9.405-5 and earlier allows local administrators to obtain sensitive password information by reading the "value" field of the SMTP user settings in the notifications configuration tab.

The Frontend component in Sophos UTM with firmware 9.405-5 and earlier allows local administrators to obtain sensitive password information by reading the "value" field of the SMTP user settings in the notifications configuration tab.

EPSS

Процентиль: 7%
0.00027
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.4
nvd
больше 9 лет назад

The Frontend component in Sophos UTM with firmware 9.405-5 and earlier allows local administrators to obtain sensitive password information by reading the "value" field of the SMTP user settings in the notifications configuration tab.

EPSS

Процентиль: 7%
0.00027
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-200