VYPR

Secure Web Gateway

by Sophos

CVEs (2)

  • CVE-2016-9554HigJan 28, 2017
    risk 0.52cvss 7.2epss 0.25

    The Sophos Web Appliance Remote / Secure Web Gateway server (version 4.2.1.3) is vulnerable to a Remote Command Injection vulnerability in its web administrative interface. These vulnerabilities occur in MgrDiagnosticTools.php (/controllers/MgrDiagnosticTools.php), in the…

  • CVE-2020-9363HigFeb 24, 2020
    risk 0.51cvss 7.8epss 0.01

    The Sophos AV parsing engine before 2020-01-14 allows virus-detection bypass via a crafted ZIP archive. This affects Endpoint Protection, Cloud Optix, Mobile, Intercept X Endpoint, Intercept X for Server, and Secure Web Gateway. NOTE: the vendor feels that this does not apply to…