An information disclosure vulnerability in Webadmin allows an unauthenticated remote attacker to read the device serial number in Sophos Firewall version v18.5 MR2 and older.
References
Link | Resource |
---|---|
https://www.sophos.com/en-us/security-advisories/sophos-sa-20220328-sfos-18-5-3 | Vendor Advisory |
Configurations
Information
Published : 2022-03-28 18:15
Updated : 2022-04-05 05:39
NVD link : CVE-2022-0331
Mitre link : CVE-2022-0331
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
sophos
- sfos