CVE-2021-25265: High severity sophos connect vulnerability
Published Mar 22, 2021
·Updated
A malicious website could execute code remotely in Sophos Connect Client before version 2.1.
Affected Software
2 affected components
Sophos Connect<2.1
Microsoft Windows
Remediation
Event History
Mar 22, 2021
CVE Published
via MITRE·05:24 PM
Data Sourced
via MITRE·05:24 PM
Description
Frequently Asked Questions
1
What is CVE-2021-25265?
CVE-2021-25265 is a vulnerability that allows a malicious website to execute code remotely in Sophos Connect Client before version 2.1.
2
What software is affected by CVE-2021-25265?
Sophos Connect Client before version 2.1 is affected by CVE-2021-25265.
3
What is the severity of CVE-2021-25265?
CVE-2021-25265 has a severity rating of 8.8 (high).
4
How can I fix CVE-2021-25265?
To fix CVE-2021-25265, update Sophos Connect Client to version 2.1 or later.
5
Where can I find more information about CVE-2021-25265?
You can find more information about CVE-2021-25265 in the Sophos Community Security Blog.