CVE-2020-9363: High severity Sophos Cloud Optix vulnerability
The Sophos AV parsing engine before 2020-01-14 allows virus-detection bypass via a crafted ZIP archive. This affects Endpoint Protection, Cloud Optix, Mobile, Intercept X Endpoint, Intercept X for Server, and Secure Web Gateway. NOTE: the vendor feels that this does not apply to endpoint-protection products because the virus would be detected upon extraction.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-9363?
CVE-2020-9363 is a vulnerability in the Sophos AV parsing engine that allows virus-detection bypass via a crafted ZIP archive.
Which software is affected by CVE-2020-9363?
CVE-2020-9363 affects Sophos Endpoint Protection, Sophos Cloud Optix, Sophos Mobile, Sophos Intercept X Endpoint, Sophos Intercept X for Server, and Sophos Secure Web Gateway.
What is the severity of CVE-2020-9363?
CVE-2020-9363 has a severity rating of 7.8 (High).
How can a virus-detection bypass be achieved using CVE-2020-9363?
A virus-detection bypass can be achieved by using a crafted ZIP archive.
Where can I find more information about CVE-2020-9363?
You can find more information about CVE-2020-9363 in the following references: [https://blog.zoller.lu/p/release-mode-coordinated-disclosure-ref.html](https://blog.zoller.lu/p/release-mode-coordinated-disclosure-ref.html) and [https://community.sophos.com/b/security-blog/posts/sophos-comments-to-cve-2020-9363](https://community.sophos.com/b/security-blog/posts/sophos-comments-to-cve-2020-9363).