CVE-2024-13974

8.1HIGH

A business logic vulnerability in the Up2Date component of Sophos Firewall older than version 21.0 MR1 (20.0.1) can lead to attackers controlling the firewall’s DNS environment to achieve remote code

发布于: 7/21/2025更新于: 11/17/2025

描述

A business logic vulnerability in the Up2Date component of Sophos Firewall older than version 21.0 MR1 (20.0.1) can lead to attackers controlling the firewall’s DNS environment to achieve remote code execution.

AI分析AI驱动

受影响产品

sophosfirewall_firmware
sophosfirewall
-

参考资料