Security Advisory

CVE-2017-6184

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-03-30 17:00:00
Last updated 2024-08-05 15:25:48
Assigner mitre
State PUBLISHED

Description

In Sophos Web Appliance (SWA) before 4.3.1.2, a section of the machines interface responsible for generating reports was vulnerable to remote command injection via the token parameter, aka NSWA-1303.