CVE-2017-6182 | Sophos Web Appliance up to 4.3.1.1 Report Generator command injection (EDB-42332 / Nessus ID 99237)
A vulnerability was found in Sophos Web Appliance up to 4.3.1.1 and classified as critical. Affected by this issue is some unknown functionality of the component Report Generator. The manipulation leads to command injection.
This vulnerability is handled as CVE-2017-6182. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.