Vulnerabilities in Sophos
47 resultsCVE-2022-0652LOWConfd log files contain local users', including root’s, SHA512crypt password hashes with insecure access permissions. This allows a local atEPSS 0.2%CVE-2024-13861HIGHA code injection vulnerability in the Debian package component of Taegis Endpoint Agent (Linux) versions older than 1.3.10 allows local userEPSS 0.2%CVE-2022-48310MEDIUMAn information disclosure vulnerability allows sensitive key material to be included in technical support archives in Sophos Connect versionEPSS 0.1%CVE-2024-13972HIGHA vulnerability related to registry permissions in the Intercept X for Windows updater prior to Core Agent version 2024.3.2 can lead to a loEPSS 0.1%CVE-2025-7472HIGHA local privilege escalation vulnerability in the Intercept X for Windows installer prior version 1.22 can lead to a local user gaining systEPSS 0.1%CVE-2024-8885HIGHA local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device Encryption 2024.2.0 and older allows writinEPSS 0.1%CVE-2025-7433HIGHA local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device Encryption 2025.1 and older allows arbitrarEPSS 0.1%