9.8

CVE-2020-15069

Warnung
Sophos XG Firewall 17.x through v17.5 MR12 allows a Buffer Overflow and remote code execution via the HTTP/S Bookmarks feature for clientless access. Hotfix HF062020.1 was published for all firewalls running v17.x.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sophos ≫ Xg Firewall Firmware Version >= 17.0 < 17.5
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update -
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release1
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release10
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release11
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release12
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release3
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release4
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release5
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release6
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release7
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release8
   Sophos ≫ Xg Firewall Version -
Sophos ≫ Xg Firewall Firmware Version 17.5 Update maintenance_release9
   Sophos ≫ Xg Firewall Version -

06.02.2025: CISA Known Exploited Vulnerabilities (KEV) Catalog

Sophos XG Firewall Buffer Overflow Vulnerability

Schwachstelle

Sophos XG Firewall contains a buffer overflow vulnerability that allows for remote code execution via the "HTTP/S bookmark" feature.

Beschreibung

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Erforderliche Maßnahmen
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 10.67% 0.952
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CISA-ADP 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

https://community.sophos.com/b/security-blog/posts/advisory-buffer-overflow-vulnerability-in-user-portal
Vendor Advisory
Mitigation
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-15069
US Government Resource