cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2022-3980,https://securityvulnerability.io/vulnerability/CVE-2022-3980,,An XML External Entity (XEE) vulnerability allows server-side request forgery (SSRF) and potential code execution in Sophos Mobile managed on-premises between versions 5.0.0 and 9.7.4.,Sophos,Sophos Mobile Managed On-premises,9.8,CRITICAL,0.46592000126838684,false,false,false,false,,false,false,2022-11-16T00:00:00.000Z,0 CVE-2021-25266,https://securityvulnerability.io/vulnerability/CVE-2021-25266,,"An insecure data storage vulnerability allows a physical attacker with root privileges to retrieve TOTP secret keys from unlocked phones in Sophos Authenticator for Android version 3.4 and older, and Intercept X for Mobile (Android) before version 9.7.3495.",Sophos,"Intercept X For Mobile (android),Sophos Authenticator (android)",3.9,LOW,0.0004400000034365803,false,false,false,false,,false,false,2022-04-27T16:45:13.000Z,0 CVE-2020-9363,https://securityvulnerability.io/vulnerability/CVE-2020-9363,,"The Sophos AV parsing engine before 2020-01-14 allows virus-detection bypass via a crafted ZIP archive. This affects Endpoint Protection, Cloud Optix, Mobile, Intercept X Endpoint, Intercept X for Server, and Secure Web Gateway. NOTE: the vendor feels that this does not apply to endpoint-protection products because the virus would be detected upon extraction.",Sophos,"Cloud Optix,Mobile,Intercept X Endpoint,Intercept X For Server,Secure Web Gateway,Endpoint Protection",7.8,HIGH,0.0007600000244565308,false,false,false,false,,false,false,2020-02-24T15:07:39.000Z,0 CVE-2016-6597,https://securityvulnerability.io/vulnerability/CVE-2016-6597,,"Sophos EAS Proxy before 6.2.0 for Sophos Mobile Control, when Lotus Traveler is enabled, allows remote attackers to access arbitrary web-resources from the backend mail system via a request for the resource, aka an Open Reverse Proxy vulnerability.",Sophos,Mobile Control Eas Proxy,8.6,HIGH,0.001979999942705035,false,false,false,false,,false,false,2016-08-10T14:00:00.000Z,0