High
CVE-2022-3980
Sophos Mobile is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. By sending specially crafted XML data, a remote attacker could achieve server-side request forgery (SSRF) and potential code execution.
Gain Access
Sophos
Refer to Sophos Security Advisory for patch, upgrade or suggested workaround information.