Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Sophos Disk Encryption (SDE) 5.x in Sophos Enterprise Console (SEC) 5.x before 5.2.2 does not enforce intended authentication requirements for a resume action from sleep mode, which allows physically proximate attackers to obtain desktop access by leveraging the absence of a login screen.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sophos Enterprise Console Sophos Disk Encryption 授权问题漏洞
Vulnerability Description
Sophos Enterprise Console(SEC)和Sophos Disk Encryption(SDE)都是英国Sophos公司的产品。SEC是一款针对各种Sophos Enterprise产品的管理控制台;SDE是一套磁盘加密工具。 SEC 5.2.1.r2及之前版本的SDE 5.x版本中存在安全漏洞,该漏洞源于桌面从睡眠模式恢复到活动模式没有要求身份验证。可直接访问设备的攻击者可利用该漏洞获取桌面访问权限。
CVSS Information
N/A
Vulnerability Type
N/A