Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2020-29574
Disclosure Date: December 11, 2020 (last updated February 22, 2025)
An SQL injection vulnerability in the WebAdmin of Cyberoam OS through 2020-12-04 allows unauthenticated attackers to execute arbitrary SQL statements remotely.
1
Attacker Value
Unknown
CVE-2019-17059
Disclosure Date: October 11, 2019 (last updated November 27, 2024)
A shell injection vulnerability on the Sophos Cyberoam firewall appliance with CyberoamOS before 10.6.6 MR-6 allows remote attackers to execute arbitrary commands via the Web Admin and SSL VPN consoles.
1
Attacker Value
Unknown
CVE-2015-6811
Disclosure Date: September 04, 2015 (last updated October 05, 2023)
SQL injection vulnerability in the Sophos Cyberoam CR500iNG-XP firewall appliance with CyberoamOS 10.6.2 MR-1 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter to login.xml.
0