Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-533p-5wv5-6gqg

Опубликовано: 08 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An improper authentication vulnerability has been identified in SonicWall SonicOS SSL-VPN feature, which in specific conditions could allow a remote attacker to bypass authentication. 

This issue affects only firmware version SonicOS 7.1.1-7040.

An improper authentication vulnerability has been identified in SonicWall SonicOS SSL-VPN feature, which in specific conditions could allow a remote attacker to bypass authentication. 

This issue affects only firmware version SonicOS 7.1.1-7040.

EPSS

Процентиль: 75%
0.00863
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 лет назад

An improper authentication vulnerability has been identified in SonicWall SonicOS SSL-VPN feature, which in specific conditions could allow a remote attacker to bypass authentication.  This issue affects only firmware version SonicOS 7.1.1-7040.

CVSS3: 8.6
fstec
около 2 лет назад

Уязвимость реализации технологии удаленного доступа SSL VPN операционных систем SonicOS, позволяющая нарушителю обойти процесс аутентификации

EPSS

Процентиль: 75%
0.00863
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287