← Vulnerability feed

Vulnerability record · CVE-2013-5932 · published 23 September 2013

CVE-2013-5932: Sophos unified threat management software vulnerability

Sophos · Unified Threat Management Software

Unspecified vulnerability in WebAdmin in Sophos UTM (aka Astaro Security Gateway) before 9.105 has unknown impact and attack vectors.

10.0 CVSS 2.0 High EPSS 5.4% · top 7.6%
10.0CVSS 2.0 base score
5.4%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References
16 Jun 2026Last modified by NVD

Description

Unspecified vulnerability in WebAdmin in Sophos UTM (aka Astaro Security Gateway) before 9.105 has unknown impact and attack vectors.

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2013-5932 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.1CVE-2015-7547glibc libresolv getaddrinfo stack buffer overflowMultiple stack-based buffer overflows exist in the send_dg and send_vc functions of the libresolv library in GNU C Library (glibc) before 2.23. A cra…EPSS 91%analysed8.1CVE-2016-0778Oracle linux memory buffer overflow vulnerabilityThe (1) roaming_read and (2) roaming_write functions in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2, when certain proxy …EPSS 21%7.8CVE-2014-2537Sophos unified threat management software vulnerabilityMemory leak in the TCP stack in the kernel in Sophos UTM before 9.109 allows remote attackers to cause a denial of service (memory consumption) via u…EPSS 3.1%6.5CVE-2016-0777OpenSSH client memory disclosure via roaming resend_bytesThe resend_bytes function in the OpenSSH client's roaming_common.c mishandles buffer resend requests, allowing a malicious or compromised SSH server …EPSS 63%analysed6.1CVE-2016-2046Sophos unified threat management software cross-site scripting vulnerabilityCross-site scripting (XSS) vulnerability in the UserPortal page in SOPHOS UTM before 9.353 allows remote attackers to inject arbitrary web script or …EPSS 2.8%4.4CVE-2016-7442Sophos unified threat management software information exposure vulnerabilityThe Frontend component in Sophos UTM with firmware 9.405-5 and earlier allows local administrators to obtain sensitive password information by readin…EPSS 0.54%4.4CVE-2016-7397Sophos unified threat management software information exposure vulnerabilityThe Frontend component in Sophos UTM with firmware 9.405-5 and earlier allows local administrators to obtain sensitive password information by readin…EPSS 0.54%4.3CVE-2012-3238Astaro security gateway software cross-site scripting vulnerabilityCross-site scripting (XSS) vulnerability in the Backup/Restore component in WebAdmin in Astaro Security Gateway before 8.305 allows remote attackers …EPSS 3.5%

Source: NIST National Vulnerability Database (record CVE-2013-5932), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.