
If your Sophos FW pair is running HA, the auxiliary node is directly reachable by an unauthenticated attacker, ⏬FIX⏬ https://www.linkedin.com/pulse/cve-2025-6704-pre-auth-arbitrary-file-write-rce-sophos-elomary-9z1bf https://t.co/NxNmTg2Hzi
Post summary
The tweet informs users of a pre‑authentication arbitrary file write RCE in Sophos firmware (CVE-2025-6704) and points to a link offering a fix.
