Critical Sophos Firewall Vulnerabilities Allow Pre-Auth Remote Code Execution
Posted: Wed Jul 23, 2025 4:50 pm
Sophos has disclosed five independent security vulnerabilities affecting its Firewall products, with two critical vulnerabilities enabling attackers to achieve remote code execution without authentication.
The cybersecurity vendor published the advisory on July 21, 2025, detailing vulnerabilities that impact specific configurations of Sophos Firewall installations, though the affected device populations remain relatively small at less than 1% for most issues.
https://cyberpress.org/critical-sophos- ... abilities/
The cybersecurity vendor published the advisory on July 21, 2025, detailing vulnerabilities that impact specific configurations of Sophos Firewall installations, though the affected device populations remain relatively small at less than 1% for most issues.
https://cyberpress.org/critical-sophos- ... abilities/