High severity8.8NVD Advisory· Published Apr 7, 2017· Updated May 13, 2026
CVE-2016-7786
CVE-2016-7786
Description
Sophos Cyberoam UTM CR25iNG 10.6.3 MR-5 allows remote authenticated users to bypass intended access restrictions via direct object reference, as demonstrated by a request for Licenseinformation.jsp. This is fixed in 10.6.5.
Affected products
1- cpe:2.3:o:sophos:cyberoam_cr25ing_utm_firmware:10.6.2:mr-5:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- infosecninja.blogspot.in/2017/04/cve-2016-7786-sophos-cyberoam-utm.htmlnvdTechnical DescriptionThird Party Advisory
- www.exploit-db.com/exploits/44469/nvd
News mentions
0No linked articles in our index yet.