Post-Auth Code Injection Vulnerability in Sophos Firewall Webadmin (Versions Older than 19.5 GA)

Post-Auth Code Injection Vulnerability in Sophos Firewall Webadmin (Versions Older than 19.5 GA)

CVE-2022-3696 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

A post-auth code injection vulnerability allows admins to execute code in Webadmin of Sophos Firewall releases older than version 19.5 GA.

Learn more about our Web App Pen Testing.