Skip to main content

Vendor archive

cyberoam CVEs

Beta · best-effort

5 CVEs tagged to vendor cyberoam3 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2015-6811

Published Sep 4, 2015

SQL injection vulnerability in the Sophos Cyberoam CR500iNG-XP firewall appliance with CyberoamOS 10.6.2 MR-1 and earlier allows remote attackers to execute arbitrary SQL commands…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-5503

Published Oct 7, 2014

SQL injection vulnerability in the Guest Login Portal in the Sophos Cyberoam appliances with CyberoamOS before 10.6.1 GA allows remote attackers to execute arbitrary SQL commands…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-5502

Published Oct 7, 2014

The Sophos Cyberoam appliances with CyberoamOS before 10.6.1 GA allows remote authenticated users to inject arbitrary commands via a (1) checkcert_key, (2) webclient_portal_settin…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-5501

Published Oct 7, 2014

Stack-based buffer overflow in the diagnose service in the Sophos Cyberoam appliances with CyberoamOS before 10.6.1 GA allows remote attackers to execute arbitrary code via a craf…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2012-1047

Published Feb 12, 2012

Directory traversal vulnerability in the WWWHELP Service (js/html/wwhelp.htm) in Cyberoam Central Console (CCC) 2.00.2 allows remote attackers to include and execute arbitrary loc…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1