Описание
SonicWALL firmware before 6.4.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted Internet Key Exchange (IKE) response packets, possibly including (1) a large Security Parameter Index (SPI) field, (2) a large number of payloads, or (3) a long payload.
Ссылки
- US Government Resource
- US Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 6.4.0.1 (включая)
cpe:2.3:h:sonicwall:firmware:*:*:*:*:*:*:*:*
EPSS
Процентиль: 79%
0.01232
Низкий
5.1 Medium
CVSS2
Дефекты
CWE-399
Связанные уязвимости
github
почти 4 года назад
SonicWALL firmware before 6.4.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted Internet Key Exchange (IKE) response packets, possibly including (1) a large Security Parameter Index (SPI) field, (2) a large number of payloads, or (3) a long payload.
EPSS
Процентиль: 79%
0.01232
Низкий
5.1 Medium
CVSS2
Дефекты
CWE-399