CVE

Id
94217  
CVE No.
CVE-2016-7397  
Status
Candidate  
Description
The Frontend component in Sophos UTM with firmware 9.405-5 and earlier allows local administrators to obtain sensitive password information by reading the "value" field of the SMTP user settings in the notifications configuration tab.  
Phase
Assigned (20160909)  
Votes
None (candidate not yet proposed)  
Comments