Unrated severityCISA KEVNVD Advisory· Published Apr 4, 2023· Updated Oct 21, 2025
CVE-2023-1671
CVE-2023-1671
Description
A pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance older than version 4.3.10.4 allows execution of arbitrary code.
Affected products
1- Sophos/Sophos Web Appliancev5Range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.