← Back to CVE List

CVE-2025-1071

Published: 2025-02-14T14:15Z
Last Modified: 2025-02-14T14:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS allows Stored XSS via the spamBlocker module. This vulnerability requires an authenticated administrator session to a locally managed Firebox.This issue affects Fireware OS: from 12.0 through 12.5.12+701324, from 12.6 through 12.11. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt