← Back

Sophos

sophos

168 CVEs • 73 products

Products (73)

Click to collapse
Toggle
Web Appliance
web_appliance
Anti Virus
anti-virus
Sfos
sfos
Hitmanpro
hitmanpro
Connect
connect
Firewall
firewall
Es1000
es1000
Es4000
es4000
Sophos Tester
sophos_tester
Cyberoamos
cyberoamos
Mobile
mobile
Intercept X
intercept_x
Puremessage
puremessage
Invincea X
invincea-x
Ipsec Client
ipsec_client
Cloud Optix
cloud_optix
Home
home
Ssl Vpn Client
ssl_vpn_client
Authenticator
authenticator
Iview
iview
Cyberoam
cyberoam
Xg Firewall
xg_firewall

CVEs (168)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Sophos
1Xg Firewall Firmware
Jun 17, 2026
Dec 1, 2022
N/A· v4
4.3 MEDIUM· v3
N/A· v2
A post-auth read-only SQL injection vulnerability allows users to read non-sensitive configuration database contents in the User Portal of Sophos Firewall releases older than version 19.5 GA.
1Sophos
1Xg Firewall Firmware
Jun 17, 2026
Dec 1, 2022
N/A· v4
2.7 LOW· v3
N/A· v2
A post-auth read-only SQL injection vulnerability allows API clients to read non-sensitive configuration database contents in the API controller of Sophos Firewall releases older than version 19.5 GA.
1Sophos
1Xg Firewall Firmware
Jun 17, 2026
Dec 1, 2022
N/A· v4
8.4 HIGH· v3
N/A· v2
A stored XSS vulnerability allows admin to super-admin privilege escalation in the Webadmin import group wizard of Sophos Firewall releases older than version 19.5 GA.
1Sophos
1Xg Firewall Firmware
Jun 17, 2026
Dec 1, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
A post-auth code injection vulnerability allows admins to execute code in Webadmin of Sophos Firewall releases older than version 19.5 GA.
1Sophos
1Xg Firewall Firmware
Jun 17, 2026
Dec 1, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
An OS command injection vulnerability allows admins to execute code via SSL VPN configuration uploads in Sophos Firewall releases older than version 19.5 GA.
1Sophos
1Mobile
Jun 17, 2026
Nov 16, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
An XML External Entity (XEE) vulnerability allows server-side request forgery (SSRF) and potential code execution in Sophos Mobile managed on-premises between versions 5.0.0 and 9.7.4.
1Sophos
1Firewall
Jun 17, 2026
Sep 23, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
A code injection vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v19.0 MR1 and older.
1Sophos
1Firewall
Jun 17, 2026
Sep 7, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Multiple SQLi vulnerabilities in Webadmin allow for privilege escalation from admin to super-admin in Sophos Firewall older than version 18.5 MR4 and version 19.0 MR1.
1Sophos
1Firewall Firmware
Jun 17, 2026
May 5, 2022
N/A· v4
8.4 HIGH· v3
6.0 MEDIUM· v2
Multiple XSS vulnerabilities in Webadmin allow for privilege escalation from MySophos admin to SFOS admin in Sophos Firewall older than version 19.0 GA.
1Sophos
1Firewall Firmware
Jun 17, 2026
May 5, 2022
N/A· v4
8.4 HIGH· v3
8.5 HIGH· v2
Multiple XSS vulnerabilities in Webadmin allow for privilege escalation from admin to super-admin in Sophos Firewall older than version 19.0 GA.
1Sophos
2Authenticator
Intercept X
Jun 17, 2026
Apr 27, 2022
N/A· v4
3.9 LOW· v3
2.1 LOW· v2
An insecure data storage vulnerability allows a physical attacker with root privileges to retrieve TOTP secret keys from unlocked phones in Sophos Authenticator for Android version 3.4 and older, and Intercept X for Mobi...Show more
An insecure data storage vulnerability allows a physical attacker with root privileges to retrieve TOTP secret keys from unlocked phones in Sophos Authenticator for Android version 3.4 and older, and Intercept X for Mobile (Android) before version 9.7.3495.Show less
1Sophos
1Sfos
Jun 17, 2026
Mar 29, 2022
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
An information disclosure vulnerability in Webadmin allows an unauthenticated remote attacker to read the device serial number in Sophos Firewall version v18.5 MR2 and older.
1Sophos
1Sfos
Jun 17, 2026
Mar 25, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
An authentication bypass vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v18.5 MR3 and older.
1Sophos
1Unified Threat Management
Jun 17, 2026
Mar 22, 2022
N/A· v4
7.8 HIGH· v3
2.1 LOW· v2
Confd log files contain local users', including root’s, SHA512crypt password hashes with insecure access permissions. This allows a local attacker to attempt off-line brute-force attacks against these password hashes in...Show more
Confd log files contain local users', including root’s, SHA512crypt password hashes with insecure access permissions. This allows a local attacker to attempt off-line brute-force attacks against these password hashes in Sophos UTM before version 9.710.Show less
1Sophos
1Unified Threat Management
Jun 17, 2026
Mar 22, 2022
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
A post-auth SQL injection vulnerability in the Mail Manager potentially allows an authenticated attacker to execute code in Sophos UTM before version 9.710.
1Sophos
1Ssl Vpn Client
Jun 17, 2026
Mar 8, 2022
N/A· v4
6.0 MEDIUM· v3
3.6 LOW· v2
A local attacker can overwrite arbitrary files on the system with VPN client logs using administrator privileges, potentially resulting in a denial of service and data loss, in all versions of Sophos SSL VPN client.
1Sophos
1Unified Threat Management Up2date
Jun 17, 2026
Nov 26, 2021
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
An authenticated user could potentially execute code via an SQLi vulnerability in the user portal of SG UTM before version 9.708 MR8.
1Sophos
3Exploit Prevention
Intercept X EndpointIntercept X For Server
Jun 17, 2026
Nov 26, 2021
N/A· v4
4.4 MEDIUM· v3
2.1 LOW· v2
A local administrator could prevent the HMPA service from starting despite tamper protection using an unquoted service path vulnerability in the HMPA component of Sophos Intercept X Advanced and Sophos Intercept X Advanc...Show more
A local administrator could prevent the HMPA service from starting despite tamper protection using an unquoted service path vulnerability in the HMPA component of Sophos Intercept X Advanced and Sophos Intercept X Advanced for Server before version 2.0.23, as well as Sophos Exploit Prevention before version 3.8.3.Show less
1Sophos
1Sophos Secure Workspace
Jun 17, 2026
Oct 30, 2021
N/A· v4
7.0 HIGH· v3
4.4 MEDIUM· v2
A local attacker could bypass the app password using a race condition in Sophos Secure Workspace for Android before version 9.7.3115.
1Sophos
1Hitmanpro
Jun 17, 2026
Oct 8, 2021
N/A· v4
6.0 MEDIUM· v3
3.6 LOW· v2
A local attacker could read or write arbitrary files with administrator privileges in HitmanPro before version Build 318.