Directory Traversal Vulnerability in Sophos Web Appliance
CVE-2013-2641
Currently unrated
Key Information:
- Vendor
Sophos
- Vendor
- CVE Published:
- 18 March 2014
What is CVE-2013-2641?
A directory traversal vulnerability exists in the 'patience.cgi' script of Sophos Web Appliance, allowing remote attackers to exploit the 'id' parameter. This flaw could lead to unauthorized reading of sensitive files on the system, creating significant security risks. Users of affected versions, specifically those prior to 3.7.8.2, are urged to apply the latest updates and enhance their system defenses.