Open Reverse Proxy Vulnerability in Sophos Mobile Control Products
CVE-2016-6597
8.6HIGH
What is CVE-2016-6597?
The vulnerability within Sophos EAS Proxy versions prior to 6.2.0 allows remote attackers to exploit open reverse proxy functionality when Lotus Traveler is enabled. This exploitation gives unauthorized access to arbitrary web resources from the backend mail system, potentially leading to unauthorized data exposure and significant security risks.