Remote Command Injection Vulnerability in Sophos Web Appliance
CVE-2017-6184
4.7MEDIUM
What is CVE-2017-6184?
A security flaw in Sophos Web Appliance versions before 4.3.1.2 allows attackers to execute arbitrary commands remotely via the token parameter in the reporting section of the interface. This vulnerability highlights the critical need for timely updates and patch management to mitigate potential exploitation.