CNNVD-202507-2641 Information

CNNVD ID

CNNVD-202507-2641

CVE-2024-13974

  • CNNVD Published: 2025-07-21

Description (Chinese)

Sophos Firewall是英国Sophos公司的一款防火墙。 Sophos Firewall 21.0 MR1之前版本存在安全漏洞,该漏洞源于Up2Date组件存在业务逻辑问题,可能导致攻击者控制DNS环境并执行远程代码。

Description (English)

Sophos Firewall is a firewall of the British company Sophos. The previous version of Sophies Firewall 21.0 MR1 had a security loophole, which stemmed from the business logic of the Up2Date component, which could lead to the attackers controlling the DNS environment and implementing remote codes.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Sophos

Published

2025-07-21

Last Modified

2026-02-24

References

https://www.sophos.com/en-us/security-advisories/sophos-sa-20250721-sfos-rce

Patch

https://www.sophos.com/en-us/security-advisories/sophos-sa-20250721-sfos-rce

Share on: