CVE-2020-11503

Description

A heap-based buffer overflow in the awarrensmtp component of Sophos XG Firewall v17.5 MR11 and older potentially allows an attacker to run arbitrary code remotely.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.291

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities affected in sfos 17.0 NCM
Multiple Vulnerabilities affected in sfos 17.1 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.1-maintenance_release3 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release9 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release8 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release7 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release6 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release5 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release4 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release3 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release2 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release11 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release10 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5-maintenance_release1 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.5 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.1-maintenance_release4 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.1-maintenance_release2 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.1-maintenance_release1 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.0-maintenance_release9 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.0-maintenance_release8 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.0-maintenance_release7 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.0-maintenance_release6 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.0-maintenance_release5 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.0-maintenance_release4 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.0-maintenance_release3 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.0-maintenance_release2 NCM
Vulnerabilities CVE-2020-11503 ,CVE-2020-12271 ,CVE-2022-1040 ,CVE-2022-0331 are affected in sfos 17.0-maintenance_release1 NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234