claytonvantol.us
SESSION: secure TLS: 1.3 PID: 1337

clayton@site:~/news$ cat cve-2020-12271-sophos-sfos.log

CVE-2020-12271 — Sophos SFOS SQL Injection Vulnerability

2021-11-03 • CISA Known Exploited Vulnerability


[event] Sophos Firewall operating system (SFOS) firmware contains a SQL injection vulnerability when configured with either the administration (HTTPS) service or the User Portal is exposed on the WAN zone. Successful exploitation may cause remote code execution to exfiltrate usernames and hashed passwords for the local device admin(s), portal admins, and user accounts used for remote access (but not external Active Directory or LDAP passwords).

> AFFECTED SOFTWARE

Field Value
Vendor Sophos
Product SFOS
CWE CWE-89
CVE ID CVE-2020-12271
Date Added 2021-11-03
Due Date 2022-05-03
Ransomware Campaign Known — this vulnerability has been leveraged in ransomware campaigns

> MITIGATION

Apply updates per vendor instructions.

Due Date: 2022-05-03

> REFERENCES


← back to terminal

UPTIME: 1337d v2.0.1 privacy LAST LOGIN: 2026-05-30 20:36:16 UTC