Логотип exploitDog
bind:CVE-2024-12727
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-12727

Количество 3

Количество 3

nvd логотип

CVE-2024-12727

около 1 года назад

A pre-auth SQL injection vulnerability in the email protection feature of Sophos Firewall versions older than 21.0 MR1 (21.0.1) allows access to the reporting database and can lead to remote code execution if a specific configuration of Secure PDF eXchange (SPX) is enabled in combination with the firewall running in High Availability (HA) mode.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-vf9g-3qff-2rx6

около 1 года назад

A pre-auth SQL injection vulnerability in the email protection feature of Sophos Firewall versions older than 21.0 MR1 (21.0.1) allows access to the reporting database and can lead to remote code execution if a specific configuration of Secure PDF eXchange (SPX) is enabled in combination with the firewall running in High Availability (HA) mode.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2024-11491

около 1 года назад

Уязвимость функции email protection межсетевых экранов Sophos Firewall (ранее Sophos XG Firewall), позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-12727

A pre-auth SQL injection vulnerability in the email protection feature of Sophos Firewall versions older than 21.0 MR1 (21.0.1) allows access to the reporting database and can lead to remote code execution if a specific configuration of Secure PDF eXchange (SPX) is enabled in combination with the firewall running in High Availability (HA) mode.

CVSS3: 9.8
2%
Низкий
около 1 года назад
github логотип
GHSA-vf9g-3qff-2rx6

A pre-auth SQL injection vulnerability in the email protection feature of Sophos Firewall versions older than 21.0 MR1 (21.0.1) allows access to the reporting database and can lead to remote code execution if a specific configuration of Secure PDF eXchange (SPX) is enabled in combination with the firewall running in High Availability (HA) mode.

CVSS3: 9.8
2%
Низкий
около 1 года назад
fstec логотип
BDU:2024-11491

Уязвимость функции email protection межсетевых экранов Sophos Firewall (ранее Sophos XG Firewall), позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
2%
Низкий
около 1 года назад

Уязвимостей на страницу