A post-auth SQLi vulnerability in the User Portal allows...
High severity
Unreviewed
Published
Dec 19, 2024
to the GitHub Advisory Database
•
Updated Dec 20, 2024
Description
Published by the National Vulnerability Database
Dec 19, 2024
Published to the GitHub Advisory Database
Dec 19, 2024
Last updated
Dec 20, 2024
A post-auth SQLi vulnerability in the User Portal allows authenticated users to execute code remotely in Sophos Firewall older than version 21.0 MR1 (21.0.1).
References