VYPR
Medium severity6.7NVD Advisory· Published May 17, 2021· Updated Jun 17, 2026

CVE-2021-25264

CVE-2021-25264

Description

In multiple versions of Sophos Endpoint products for MacOS, a local attacker could execute arbitrary code with administrator privileges.

Affected products

7
  • cpe:2.3:a:sophos:home:*:*:*:*:*:macos:*:*
    Range: <=10.0.3
  • cpe:2.3:a:sophos:intercept_x:*:*:*:*:central:macos:*:*+ 1 more
    • cpe:2.3:a:sophos:intercept_x:*:*:*:*:central:macos:*:*range: <=10.0.3
    • cpe:2.3:a:sophos:intercept_x:*:*:*:*:opm:macos:*:*range: <=9.10.1
  • Sophos/Intercept X for MacOSv5
    Range: unspecified
  • Sophos/Intercept X for MacOS (OPM)v5
    Range: unspecified
  • Sophos/Sophos Home for MacOSv5
    Range: unspecified

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.