Vulnerabilities (CVE)

Filtered by vendor Cyberoam Subscribe
Filtered by product Cyberoam Os
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-5503 1 Cyberoam 1 Cyberoam Os 2024-02-04 10.0 HIGH N/A
SQL injection vulnerability in the Guest Login Portal in the Sophos Cyberoam appliances with CyberoamOS before 10.6.1 GA allows remote attackers to execute arbitrary SQL commands via the add_guest_user opcode.
CVE-2014-5502 1 Cyberoam 1 Cyberoam Os 2024-02-04 9.0 HIGH N/A
The Sophos Cyberoam appliances with CyberoamOS before 10.6.1 GA allows remote authenticated users to inject arbitrary commands via a (1) checkcert_key, (2) webclient_portal_settings, (3) sslvpn_liveuser_delete, or (4) ccc_flush_sql_file opcode.
CVE-2014-5501 1 Cyberoam 1 Cyberoam Os 2024-02-04 9.3 HIGH N/A
Stack-based buffer overflow in the diagnose service in the Sophos Cyberoam appliances with CyberoamOS before 10.6.1 GA allows remote attackers to execute arbitrary code via a crafted webpage or file.