First published: Thu Dec 19 2024(Updated: )
A weak credentials vulnerability potentially allows privileged system access via SSH to Sophos Firewall older than version 20.0 MR3 (20.0.3).
Credit: security-alert@sophos.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sophos Firewall Firmware | <20.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-12728 is considered a critical vulnerability due to the potential for privileged system access via SSH.
To address CVE-2024-12728, upgrade your Sophos Firewall to version 20.0 MR3 (20.0.3) or a later version.
CVE-2024-12728 affects Sophos Firewall versions older than 20.0 MR3 (20.0.3).
CVE-2024-12728 is categorized as a weak credentials vulnerability.
Yes, exploiting CVE-2024-12728 can potentially allow unauthorized privileged system access.