Sophos fixes critical firewall hole exploited by miscreants
A critical code-injection vulnerability in Sophos Firewall has been fixed — but not before miscreants found and exploited the bug.
The flaw, tracked as CVE-2022-3236, exists in the User Portal and Webadmin components of the firewall in versions 19.0 and older. While it hasn't been issued a CVSS severity score, Sophos deemed it"critical" and noted that it allowed for remote code execution. "Sophos has observed this vulnerability being used to target a small set of specific organizations, primarily in the South Asia region," the vendor noted in anThe British security software vendor issued hotfixes for supported versions last week, and also provided a workaround, which includedSophos also said it's continuing to investigate, and will provide additional details at a later date.
As of Tuesday, the security shop's blogs, which regularly detail vulnerabilities and exploits affecting other software vendors, hadn't mentioned its own critical firewall bug.
Belgique Dernières Nouvelles, Belgique Actualités
Similar News:Vous pouvez également lire des articles d'actualité similaires à celui-ci que nous avons collectés auprès d'autres sources d'information.
NASCAR penalizes Byron, Gibbs for violating code of conductMajor shake-up in the playoffs as NASCAR penalizes WilliamByron for violating its Code of Conduct after spinning dennyhamlin under caution! A behavioral penalty has also been issued to TyGibbs for an incident on pit road:
Lire la suite »
Girls Who Code book series banned in some US classroomsCulture wars may have come to gentle tales of tweens enjoying friends, fun, and programming
Lire la suite »
Cuba Approves Same-Sex Marriage, Following Tense ReferendumCubans have approved a sweeping 'family law” code that would allow same-sex couples to marry and adopt.
Lire la suite »
My daughter is being punished for not following 'extreme' school uniform rulesA MUM is defending her daughter after she was punished for breaking her school’s “extreme” uniform rules. Louise Tyms says the dress code at Ormskirk School in Lancashire is ̶…
Lire la suite »
Xbox Game Pass newcomer Moonscars launches with 'critical bug'Xbox Game Pass adds dark 2D Soulslike Moonscars today, but the team has issued a statement warning of a 'critical bug' players may encounter late in the game. A fix is reportedly already in the works for the issue.
Lire la suite »
Ana de Armas defends Blonde's explicit scenes'I didn't feel exploited because I was in control.'
Lire la suite »