Security Advisories

Impact
Advisory Name
CVE
Updated
Product Family
Article Version
  • CVE(s):
    CVE-2022-3236
    CVE-2022-3226
    CVE-2022-3713
    CVE-2022-3696
    CVE-2022-3709
    CVE-2022-3711
    CVE-2022-3710
    Updated:
    Product(s):
    Sophos Firewall
    Article Version: 1
    Publication ID: sophos-sa-20221201-sfos-19-5-0
    First Published:
    Workaround: No
  • CVE(s):
    CVE-2022-3786
    CVE-2022-3602
    Updated:
    Product(s):
    Cloud Optix
    Intercept X Endpoint
    Intercept X for Server
    Reflexion
    SafeGuard Enterprise (SGN)
    Sophos Authenticator
    Sophos Central
    Sophos Connect Client 2.0
    Sophos Email
    Sophos Email Appliance (SEA)
    Sophos Enterprise Console (SEC)
    Sophos Firewall
    Sophos Home
    Sophos Mobile
    Sophos Mobile EAS Proxy
    Sophos RED
    Sophos Transparent Authentication Suite (STAS)
    Sophos UTM
    Sophos UTM Manager
    Sophos Web Appliance (SWA)
    Sophos Wireless
    Sophos ZTNA
    SophosLabs Intelix
    Article Version: 3
    Publication ID: sophos-sa-20221031-openssl-vuln
    First Published:
    Workaround: No
  • CVE(s):
    CVE-2022-3236
    Updated:
    Product(s):
    Sophos Firewall
    Article Version: 2
    Publication ID: sophos-sa-20220923-sfos-rce
    First Published:
    Workaround: Yes
  • CVE(s):
    CVE-2022-1040
    CVE-2021-25268
    CVE-2022-1292
    CVE-2022-1807
    CVE-2021-25267
    Updated:
    Product(s):
    Sophos Firewall
    Article Version: 1
    Publication ID: sophos-sa-20220907-sfos-18-5-4
    First Published:
    Workaround: No
  • CVE(s):
    CVE-2022-1040
    Updated:
    Product(s):
    Sophos Firewall
    Article Version: 3
    Publication ID: sophos-sa-20220325-sfos-rce
    First Published:
    Workaround: Yes
  • CVE(s):
    CVE-2022-0778
    Updated:
    Product(s):
    Sophos Firewall
    Sophos UTM
    Sophos Web Appliance (SWA)
    Article Version: 1
    Publication ID: sophos-sa-20220318-openssl-dos
    First Published:
    Workaround: No
  • CVE(s):
    CVE-2021-36809
    Updated:
    Product(s):
    Sophos SSL VPN client
    Article Version: 1
    Publication ID: sophos-sa-20220303-sslvpn-local-dos
    First Published:
    Workaround: No
  • CVE(s):
    Updated:
    Product(s):
    Sophos Central
    Article Version: 2
    Publication ID: 2022-02-CentralLogging
    First Published:
    Workaround: No
  • CVE(s):
    CVE-2021-44228
    CVE-2021-45046
    CVE-2021-45105
    CVE-2021-44832
    Updated:
    Product(s):
    Client Authentication Agent
    Cloud Optix
    Intercept X Endpoint
    Intercept X for Server
    Reflexion
    SafeGuard Enterprise (SGN)
    Sophos UTM
    Sophos UTM Manager
    Sophos Authenticator
    Sophos Central
    Sophos Connect Client 2.0
    Sophos Email
    Sophos Email Appliance (SEA)
    Sophos Enterprise Console (SEC)
    Sophos Firewall
    Sophos Home
    Sophos Mobile
    Sophos Mobile EAS Proxy
    Sophos RED
    Sophos SSL VPN client
    Sophos Transparent Authentication Suite (STAS)
    Sophos Web Appliance (SWA)
    Sophos Wireless
    Sophos ZTNA
    SophosLabs Intelix
    Article Version: 27
    Publication ID: sophos-sa-20211210-log4j-rce
    First Published:
    Workaround: No
  • CVE(s):
    CVE-2021-25269
    Updated:
    Product(s):
    Sophos Exploit Prevention
    Intercept X for Server
    Intercept X Endpoint
    Article Version: 1
    Publication ID: sophos-sa-20211126-ixa-hmpa-local-dos
    First Published:
    Workaround: No