Multiple exposures in Sophos UTM

Posted by Tim Schughart on Sep 30

Hello @all,

together with my colleague we found two uncritical vulnerabilities you’ll find below.

Product: Sophos UTM
Vendor: Sophos ltd.

Internal reference: ? (Bug ID)
Vulnerability type: Information Disclosure
Vulnerable version: 9.405-5, 9.404-5 and possible other versions affected (not tested)
Vulnerable component: Frontend
Report confidence: yes
Solution status: Not fixed by Vendor, no further responses from vendor.
Fixed…

Leave a Reply