Security Advisory

CVE-2015-6811

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-09-04 15:00:00
Last updated 2024-09-16 16:48:44
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability in the Sophos Cyberoam CR500iNG-XP firewall appliance with CyberoamOS 10.6.2 MR-1 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter to login.xml.