CVE-2022-0331

An information disclosure vulnerability in Webadmin allows an unauthenticated remote attacker to read the device serial number in Sophos Firewall version v18.5 MR2 and older.
Configurations

Configuration 1 (hide)

cpe:2.3:o:sophos:sfos:*:*:*:*:*:*:*:*

History

08 Aug 2023, 14:22

Type Values Removed Values Added
CWE CWE-200 NVD-CWE-noinfo

05 Apr 2022, 12:39

Type Values Removed Values Added
First Time Sophos
Sophos sfos
CWE CWE-200
CPE cpe:2.3:o:sophos:sfos:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 5.3
References (CONFIRM) https://www.sophos.com/en-us/security-advisories/sophos-sa-20220328-sfos-18-5-3 - (CONFIRM) https://www.sophos.com/en-us/security-advisories/sophos-sa-20220328-sfos-18-5-3 - Vendor Advisory

29 Mar 2022, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-29 01:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-0331

Mitre link : CVE-2022-0331

CVE.ORG link : CVE-2022-0331


JSON object : View

Products Affected

sophos

  • sfos