CVE-2017-6184

In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machine's interface responsible for generating reports was vulnerable to remote command injection via the token parameter, aka NSWA-1303.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:sophos:web_appliance:*:*:*:*:*:*:*:*

Information

Published : 2017-03-30 10:59

Updated : 2017-04-04 08:26


NVD link : CVE-2017-6184

Mitre link : CVE-2017-6184


JSON object : View

CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')

Advertisement

dedicated server usa

Products Affected

sophos

  • web_appliance