CVE-2022-3711
01.12.2022, 18:15
A post-auth read-only SQL injection vulnerability allows users to read non-sensitive configuration database contents in the User Portal of Sophos Firewall releases older than version 19.5 GA.
Vendor | Product | Version |
---|---|---|
sophos | xg_firewall_firmware | 𝑥 ≤ 19.0 |
𝑥
= Vulnerable software versions