CVE-2022-1040General(sophos / sfos)

LOWCVSS 9.8 · CRITICALCISA KEV

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

An authentication bypass vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v18.5 MR3 and older.

0.0/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2022-04-21. Apply updates per vendor instructions.

Priority

LOW

Exploitation

ACTIVE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • sfos

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • General: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
sfos

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-03-04: 103-04
Signal classification1 categories
General
1100.0%
Referenced assets2 URLs
Full discourse1 post
  • GreyNoise@GreyNoiseIO
    General

    Here's a taste of what GreyNoise customers got in this week's At The Edge intelligence brief. 268M sessions. 540K unique IPs. Four findings that matter. → Sophos CVE-2022-1040 surged 435% — second consecutive week → 9.1M RDP sessions from two IPs, one JA4T fingerprint → VPN siege Week 6 — vendors rotating after our published analysis → Scanning landscape collapsed. Enterprise campaigns didn't. Full brief: IOCs, attribution, recommendations. 🔗 https://www.greynoise.io/resources/at-the-edge-clear-030226 http://greynoise.io/contact

    Post summary

    GreyNoise brief reports a significant increase in traffic related to Sophos CVE-2022-1040 but provides no new exploit, patch, or technical detail.

    0301551.6K
    29.3K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
OSsophossfos---

Explore more