Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 5.0
CVE-2013-2641EPSS 71%
Directory traversal vulnerability in patience.cgi in Sophos Web Appliance before 3.7.8.2 allows remote attackers to read arbitrary files via the id p…
Web Appliance Firmware
after 3.7.8.1
MEDIUM 5.6
CVE-2014-1213
Sophos Anti-Virus engine (SAVi) before 3.50.1, as used in VDL 4.97G 9.7.x before 9.7.9, 10.0.x before 10.0.11, and 10.3.x before 10.3.1 does not set …
Scanning Engine
after 3.48
HIGH 10.0
CVE-2013-5932EPSS 5%
Unspecified vulnerability in WebAdmin in Sophos UTM (aka Astaro Security Gateway) before 9.105 has unknown impact and attack vectors.
Unified Threat Management Software
No fix yet
HIGH 7.2
CVE-2013-4984EPSS 8%
The close_connections function in /opt/cma/bin/clear_keys.pl in Sophos Web Appliance before 3.7.9.1 and 3.8 before 3.8.1.1 allows local users to gain…
Web Appliance
after 3.7.9
HIGH 10.0
CVE-2013-4983EPSS 90%
The get_referers function in /opt/ws/bin/sblistpack in Sophos Web Appliance before 3.7.9.1 and 3.8 before 3.8.1.1 allows remote attackers to execute …
Web Appliance Firmware
after 3.7.9
MEDIUM 6.9
CVE-2010-5249
Untrusted search path vulnerability in Sophos Free Encryption 2.40.1.1 and Sophos SafeGuard PrivateCrypto 2.40.1.2 allows local users to gain privile…
Free Encryption
Mitigation only
MEDIUM 6.2
CVE-2010-5177
Race condition in Sophos Endpoint Security and Control 9.0.5 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute danger…
Sophos Endpoint Security And Control
Mitigation only
MEDIUM 6.9
CVE-2011-5117
Sophos SafeGuard Enterprise Device Encryption 5.x through 5.50.8.13, Sophos SafeGuard Easy Device Encryption Client 5.50.x, and Sophos Disk Encryptio…
Safeguard Enterprise Device Encryption
Patch available
HIGH 7.2
CVE-2010-2308
Unspecified vulnerability in the filter driver (savonaccessfilter.sys) in Sophos Anti-Virus before 7.6.20 allows local users to gain privileges via c…
Anti Virus
after 7.6.19
MEDIUM 5.0
CVE-2008-7104
Sophos PureMessage Scanner service (PMScanner.exe) in PureMessage for Microsoft Exchange 3.0 before 3.0.2 allows remote attackers to cause a denial o…
Puremessage For Microsoft Exchange
Patch available
MEDIUM 5.0
CVE-2008-7105
Sophos PureMessage for Microsoft Exchange 3.0 before 3.0.2 allows remote attackers to cause a denial of service (EdgeTransport.exe termination) via a…
Puremessage For Microsoft Exchange
Patch available
MEDIUM 5.0
CVE-2008-7106
The installation of Sophos PureMessage for Microsoft Exchange 3.0 before 3.0.2, when both anti-virus and anti-spam are supported, does not create or …
Puremessage For Microsoft Exchange
Patch available
HIGH 10.0
CVE-2008-6904EPSS 11%
Multiple unspecified vulnerabilities in Sophos SAVScan 4.33.0 for Linux, and possibly other products and versions, allow remote attackers to cause a …
Anti Virus
Mitigation only
HIGH 9.3
CVE-2008-5541EPSS 8%
Sophos Anti-Virus 4.33.0, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placin…
Anti Virus
Mitigation only
MEDIUM 5.0
CVE-2008-3177EPSS 5%
Sophos virus detection engine 2.75 on Linux and Unix, as used in Sophos Email Appliance, Pure Message for Unix, and Sophos Anti-Virus Interface (SAVI…
Es1000
Mitigation only
MEDIUM 6.9
CVE-2008-1737
Sophos Anti-Virus 7.0.5, and other 7.x versions, when Runtime Behavioural Analysis is enabled, allows local users to cause a denial of service (reboo…
Anti Virus
Mitigation only
MEDIUM 5.0
CVE-2007-4787EPSS 6%
The virus detection engine in Sophos Anti-Virus before 2.49.0 does not properly process malformed (1) CAB, (2) LZH, and (3) RAR files with modified h…
Scanning Engine
Patch available
HIGH 7.8
CVE-2007-4577EPSS 6%
Sophos Anti-Virus for Unix/Linux before 2.48.0 allows remote attackers to cause a denial of service (infinite loop) via a malformed BZip file that re…
Anti Virus
Patch available
MEDIUM 6.8
CVE-2007-4578EPSS 7%
Sophos Anti-Virus for Windows and for Unix/Linux before 2.48.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbi…
Anti Virus
Patch available
HIGH 10.0
CVE-2006-6335EPSS 12%
Multiple buffer overflows in Sophos Anti-Virus scanning engine before 2.40 allow remote attackers to execute arbitrary code via (1) a SIT archive wit…
Sophos Anti Virus
after 2.3
MEDIUM 6.4
CVE-2006-5647EPSS 21%
Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11 allows remote attackers to …
Anti Virus
after 6.04
MEDIUM 5.0
CVE-2006-4839
Sophos Anti-Virus 5.1 allows remote attackers to cause a denial of service (memory consumption) via a file that is compressed with Petite and contain…
Sophos Anti Virus
Patch available
MEDIUM 5.0
CVE-2006-5645EPSS 18%
Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11, when "Enabled scanning of …
Anti Virus
after 6.04
MEDIUM 5.0
CVE-2006-5646EPSS 18%
Heap-based buffer overflow in Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.…
Anti Virus
after 6.04
HIGH 7.5
CVE-2006-0994EPSS 22%
Multiple Sophos Anti-Virus products, including Anti-Virus for Windows 5.x before 5.2.1 and 4.x before 4.05, when cabinet file inspection is enabled, …
Sophos Anti Virus
4.05 / 5.2.1+
MEDIUM 5.0
CVE-2005-4680EPSS 8%
Sophos Anti-Virus before 4.02, 4.5.x before 4.5.9, 4.6.x before 4.6.9, and 5.x before 5.1.4 allow remote attackers to hide arbitrary files and data v…
Sophos Anti Virus
4.02 / 4.5.9+
MEDIUM 5.0
CVE-2005-3382
Multiple interpretation error in Sophos 3.91 with the 2.28.4 engine allows remote attackers to bypass virus scanning via a file such as BAT, HTML, an…
Sophos Anti Virus
Mitigation only
MEDIUM 5.1
CVE-2005-3216
Multiple interpretation error in unspecified versions of Sophos Antivirus allows remote attackers to bypass virus detection via a malicious executabl…
Sophos Anti Virus
No fix yet
HIGH 7.5
CVE-2005-2768EPSS 13%
Heap-based buffer overflow in the Sophos Antivirus Library, as used by Sophos Antivirus, PureMessage, MailMonitor, and other products, allows remote …
Sophos Anti Virus
Mitigation only
MEDIUM 5.0
CVE-2005-1530EPSS 6%
Sophos Anti-Virus 5.0.1, with "Scan inside archive files" enabled, allows remote attackers to cause a denial of service (CPU consumption by infinite …
Sophos Anti Virus
Patch available