CVE-2018-9233: Sophos Endpoint Protection
High severity, CVSS 7.8. EPSS: 1.7% chance of exploitation in the next 30 days.
Sophos Endpoint Protection 10.7 uses an unsalted SHA-1 hash for password storage in %PROGRAMDATA%\Sophos\Sophos Anti-Virus\Config\machine.xml, which makes it easier for attackers to determine a cleartext password, and subsequently choose unsafe malware settings, via rainbow tables or other approaches.
Affected products
- Sophos Endpoint Protection: version 10.7 only
Published 2018-04-05. Last modified 2026-06-17.