Home
CRITICAL: 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDefault status
unaffected
Any version before 1.7.2563 (MR7)
affected
Description
An authentication bypass vulnerability allows remote attackers to gain administrative privileges on Sophos AP6 Series Wireless Access Points older than firmware version 1.7.2563 (MR7).
Problem types
CWE-620 Unverified Password Change
Product status
Any version before 1.7.2563 (MR7)
References
www.sophos.com/...security-advisories/sophos-sa-20250909-ap6