CISA description
Sophos Web Appliance contains a command injection vulnerability in the warn-proceed handler that allows for remote code execution.
Sophos · Web Appliance
Sophos Web Appliance Command Injection Vulnerability
Sophos Web Appliance contains a command injection vulnerability in the warn-proceed handler that allows for remote code execution.
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Vulnerability data triggers these controls during assessment and continuous monitoring.