CVE-2024-12729: Code Injection
Published Dec 19, 2024
·Updated
A post-auth code injection vulnerability in the User Portal allows authenticated users to execute code remotely in Sophos Firewall older than version 21.0 MR1 (21.0.1).
Affected Software
3 affected components
Sophos Firewall<21.0.1
All of the following
Sophos Firewall Firmware<21.0.1
Sophos Firewall
Remediation
Event History
Dec 19, 2024
CVE Published
via MITRE·08:58 PM
Data Sourced
via MITRE·08:58 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Dec 20, 2024
News Published
via BleepingComputer·03:31 PM
News Published
via BleepingComputer·03:32 PM
Frequently Asked Questions
1
What is the severity of CVE-2024-12729?
CVE-2024-12729 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2024-12729?
To remediate CVE-2024-12729, upgrade Sophos Firewall to version 21.0.1 or later.
3
Who is affected by CVE-2024-12729?
CVE-2024-12729 affects authenticated users of Sophos Firewall versions earlier than 21.0 MR1 (21.0.1).
4
What type of attack does CVE-2024-12729 enable?
CVE-2024-12729 enables authenticated users to execute arbitrary code on the affected Sophos Firewall.
5
Is there a workaround for CVE-2024-12729?
There are no known workarounds for CVE-2024-12729, so upgrading to a patched version is essential.