Security Advisory

CVE-2024-12729

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-12-19 20:58:52
Last updated 2024-12-21 04:55:58
Assigner Sophos
State PUBLISHED

Description

A post-auth code injection vulnerability in the User Portal allows authenticated users to execute code remotely in Sophos Firewall older than version 21.0 MR1 (21.0.1).