Multiple XSS vulnerabilities in Webadmin allow for privilege escalation from MySophos admin to SFOS admin in Sophos Firewall older than version 19.0 GA.
References
Link | Resource |
---|---|
https://www.sophos.com/en-us/security-advisories/sophos-sa-20220505-sfos-19-0-0 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: Sophos
Published: 2022-05-05T18:05:13
Updated: 2022-05-05T18:05:13
Reserved: 2021-01-15T00:00:00
Link: CVE-2021-25268
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-05-05T18:15:09.427
Modified: 2022-05-13T04:26:46.457
Link: CVE-2021-25268
JSON object: View
Redhat Information
No data.
CWE