SQL Injection Vulnerability in Sophos Firewall by Sophos
CVE-2025-7624
9.8CRITICAL
What is CVE-2025-7624?
An SQL injection vulnerability exists in the legacy (transparent) SMTP proxy of Sophos Firewall. If a quarantining policy is active for Email and the firmware was upgraded from a version older than 21.0 GA, this weakness could potentially allow remote code execution, posing significant risks to organizational security. Users should update to version 21.0 MR2 (21.0.2) or later to mitigate the threat effectively.
Affected Version(s)
Sophos Firewall 0 < 21.0 MR2 (21.0.2)