Beveiligingsadvies

CVE-2025-1071

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-02-14 13:20:48
Laatst bijgewerkt 2026-08-07 23:44:33
Toegewezen door WatchGuard
CVSS-score 4.8
Status PUBLISHED

Beschrijving

A stored cross-site scripting (XSS) vulnerability exists in the management interface of WatchGuard Firebox appliances via the spamBlocker module. An authenticated remote attacker with administrator privileges could exploit this vulnerability to execute arbitrary JavaScript code in the Firebox management interface of another management user.