CVE-2025-1071
Low
No strong exploitation signal.
CVSS base
4.8
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
EPSS — probability of exploitation (30 days)
0.3%
23.0th percentile
CISA KEV
Not listed
Weakness / dates
CWE-79
Published 2025-02-14 · modified 2026-08-08
CVSS breakdown
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
| Attack Vector | N | Network |
| Attack Complexity | L | Low |
| Privileges Required | H | High |
| User Interaction | R | Required |
| Scope | C | Changed |
| Confidentiality | L | Low |
| Integrity | L | Low |
| Availability | N | None |
Timeline
- 2025-02-14 — Published (NVD)
- 2026-08-08 — Last modified (NVD)
Description
A stored cross-site scripting (XSS) vulnerability exists in the management interface of WatchGuard Firebox appliances via the spamBlocker module. An authenticated remote attacker with administrator privileges could exploit this vulnerability to execute arbitrary JavaScript code in the Firebox management interface of another management user.