Vulnerabilities > Sophos > Firewall Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2022-05-05 CVE-2021-25267 Cross-site Scripting vulnerability in Sophos Firewall Firmware
Multiple XSS vulnerabilities in Webadmin allow for privilege escalation from admin to super-admin in Sophos Firewall older than version 19.0 GA.
network
low complexity
sophos CWE-79
8.4
2022-05-05 CVE-2021-25268 Cross-site Scripting vulnerability in Sophos Firewall Firmware
Multiple XSS vulnerabilities in Webadmin allow for privilege escalation from MySophos admin to SFOS admin in Sophos Firewall older than version 19.0 GA.
network
low complexity
sophos CWE-79
8.4