CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It is listed in CISA's Known Exploited Vulnerabilities catalog, indicating confirmed active exploitation in the wild. It may be remotely exploitable. It involves a SQL injection risk. Exploitation may require the attacker to be authenticated.
CISA KEV Details
Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.
Ransomware use: Unknown
Added to KEV: 2025-02-06
Required action: The impacted product is end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue utilization of the product.
Original NVD Description
An SQL injection vulnerability in the WebAdmin of Cyberoam OS through 2020-12-04 allows unauthenticated attackers to execute arbitrary SQL statements remotely.
Related CVEs
Other vulnerabilities affecting the same vendor(s)