Security Advisory

CVE-2016-6597

8.6
HIGH

Vulnerability Description

Sophos EAS Proxy before 6.2.0 for Sophos Mobile Control, when Lotus Traveler is enabled, allows remote attackers to access arbitrary web-resources from the backend mail system via a request for the resource, aka an Open Reverse Proxy vulnerability.
Published Date August 10, 2016
Official Source NIST NVD Advisory