Lucene search

K
zdiBrandon PerryZDI-14-069
HistoryApr 08, 2014 - 12:00 a.m.

Sophos Web Appliance Privilege Escalation and Remote Code Execution Vulnerability

2014-04-0800:00:00
Brandon Perry
www.zerodayinitiative.com
18

EPSS

0.105

Percentile

95.1%

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Sophos Web Appliance. Authentication is required to exploit this vulnerability. The specific flaws exist within the change_password and netinterface functions of the web appliance. The first flaw will allow for an unprivileged user to change the admin’s password and a remote code execution vulnerability exists when updating the network interface. This allows for an attacker to execute under root privileges.