VYPR
Unrated severityNVD Advisory· Published Jul 21, 2025· Updated Jul 21, 2025

CVE-2024-13973

CVE-2024-13973

Description

A post-auth SQL injection vulnerability in WebAdmin of Sophos Firewall versions older than 21.0 MR1 (21.0.1) can potentially lead to administrators achieving arbitrary code execution.

Affected products

2
  • Endian/Firewallllm-fuzzy
    Range: <21.0.1
  • Sophos/Sophos Firewallv5
    Range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.