target entity

SonicOS

3 source-linked records in the current knowledge graph.

high

CVE-2024-53704: SonicWall SonicOS SSLVPN Improper Authentication Vulnerability

SonicWall SonicOS contains an improper authentication vulnerability in the SSLVPN authentication mechanism that allows a remote attacker to bypass authentication. Required action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

CVE-2024-53704EPSS 95.1%SonicOSSonicWall
CISA KEV ↗ · unattributed attribution
high

CVE-2024-40766: SonicWall SonicOS Improper Access Control Vulnerability

SonicWall SonicOS contains an improper access control vulnerability that could lead to unauthorized resource access and, under certain conditions, may cause the firewall to crash. Required action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

CVE-2024-40766EPSS 15.6%SonicOSSonicWall
CISA KEV ↗ · unattributed attribution
high

CVE-2020-5135: SonicWall SonicOS Buffer Overflow Vulnerability

A buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a malicious request to the firewall. Required action: Apply updates per vendor instructions.

CVE-2020-5135EPSS 26.9%SonicOSSonicWall
CISA KEV ↗ · unattributed attribution