An SQL injection vulnerability in the WebAdmin of Cyberoam OS through 2020-12-04 allows unauthenticated attackers to execute arbitrary SQL statements remotely.
Details
EPSS Score
ⓘ
4.73%
91.1th percentile
Confidence
100%
Published
Dec 11, 2020
Last Modified
Aug 15, 2026
CISA KEV
Date Added
Feb 6, 2025
Patch Due
Feb 27, 2025
Used in ransomware campaigns
Required Action
The impacted product is end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue utilization of the product.