Loading HuntDB...

Sophos Firewall Code Injection Vulnerability

Added Sept. 23, 2022 Due Oct. 14, 2022 CVE-2022-3236
Overdue Sophos / Firewall CWE-94

Description

A code injection vulnerability in the User Portal and Webadmin of Sophos Firewall allows for remote code execution.

Required Action

Apply updates per vendor instructions.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
8 months ago