Sophos firewalls require an URGENT new flame shield.

Share This Post

Sophos recently announced that it has released a hotfix for an urgent flaw in its firewalls. Tracked as CVE-2022-1040, the vulnerability allows attackers to bypass user authentication via the firewall’s User Portal or WebAdmin interface, and then execute arbitrary code. The flaw has been assigned a severity rating of 9.8 out of 10.

Sophos declared that it “has observed this vulnerability being used to target a small set of specific organizations, primarily in the South Asia region.” Now that the flaw has been widely publicized, expect that list of targets to expand.

The vendor’s hotfix should be automatically applied to all vulnerable devices that have the “Allow automatic installation of hotfixes” feature enabled, which it is by default. However, organizations that have disabled the feature or are running End Of Life hardware will need to manually upgrade in order to patch the security hole.

You can verify if the hotfix for CVE-2022-1040 has been applied to your Sophos firewall by following the directions laid out here: https://support.sophos.com/support/s/article/KB-000043853?language=en_US



Reach out to our incident response team for help

More To Explore

Information Security News – 4/14/2025

Oracle Confirms “Obsolete Servers” Hacked Article link: https://www.bleepingcomputer.com/news/security/oracle-says-obsolete-servers-hacked-denies-cloud-breach/    Phishing Kits Now Vet Victims in Real-Time Before Stealing Credentials Article link: https://www.bleepingcomputer.com/news/security/phishing-kits-now-vet-victims-in-real-time-before-stealing-credentials/    Neptune RAT

Information Security News – 4/7/2025

Criminal Group Claims Responsibility for Cyberattack on Minnesota Casino Article Link: https://cdcgaming.com/brief/cybersecurity-incident-at-minnesota-tribal-community-casino-prompts-shutdown/ As CISA Downsizes, Where Can Enterprises Get Support? Article Link: https://www.darkreading.com/cybersecurity-operations/roundtable-cisa-downsizes-where-can-enterprises-look-support Oracle Privately

Do You Want to Shore Up Your Defenses?

We're opening our first round of threat hunting engagements to 100 organizations. Sign up or join the wait list here.