An OS command injection vulnerability allows admins to execute code via SSL VPN configuration uploads in Sophos Firewall releases older than version 19.5 GA.
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-42637 | An OS command injection vulnerability allows admins to execute code via SSL VPN configuration uploads in Sophos Firewall releases older than version 19.5 GA. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 24 Apr 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Sophos
Published:
Updated: 2025-04-24T20:13:16.366Z
Reserved: 2022-09-15T00:00:00.000Z
Link: CVE-2022-3226
Updated: 2024-08-03T01:00:10.556Z
Status : Modified
Published: 2022-12-01T18:15:10.287
Modified: 2025-04-24T20:15:24.150
Link: CVE-2022-3226
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD