Unrated severityNVD Advisory· Published Oct 7, 2014· Updated May 6, 2026
CVE-2014-5503
CVE-2014-5503
Description
SQL injection vulnerability in the Guest Login Portal in the Sophos Cyberoam appliances with CyberoamOS before 10.6.1 GA allows remote attackers to execute arbitrary SQL commands via the add_guest_user opcode.
Affected products
2cpe:2.3:o:cyberoam:cyberoam_os:*:ga:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:cyberoam:cyberoam_os:*:ga:*:*:*:*:*:*range: <=10.4
- cpe:2.3:o:cyberoam:cyberoam_os:*:rc4:*:*:*:*:*:*range: <=10.6.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- kb.cyberoam.com/default.aspnvdVendor Advisory
- www.zerodayinitiative.com/advisories/ZDI-14-329/nvd
News mentions
0No linked articles in our index yet.