First published: Mon Mar 22 2021(Updated: )
A malicious website could execute code remotely in Sophos Connect Client before version 2.1.
Credit: security-alert@sophos.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sophos Connect | <2.1 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25265 is a vulnerability that allows a malicious website to execute code remotely in Sophos Connect Client before version 2.1.
Sophos Connect Client before version 2.1 is affected by CVE-2021-25265.
CVE-2021-25265 has a severity rating of 8.8 (high).
To fix CVE-2021-25265, update Sophos Connect Client to version 2.1 or later.
You can find more information about CVE-2021-25265 in the Sophos Community Security Blog.