news.mlab.sh
Vulnerabilities
Vulnerability

CVE-2024-40766

Reference data from vuln.mlab.sh, coverage from our own index.

CVSS
9.3 Critical
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L
Risk score
100.0
Known exploited
CISA KEV
Published
2024-08-23
Status
Published

An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the firewall to crash. This issue affects SonicWall Firewall Gen 5 and Gen 6 devices, as well as Gen 7 devices running SonicOS 7.0.1-5035 and older versions.

Weaknesses

CWE-284

Coverage 1

Advisories and references