Skip to main content

SonicWall Products Multiple Vulnerabilities

Last Update Date: 19 Feb 2025 Release Date: 9 Jan 2025 2715 Views

RISK: High Risk

TYPE: Operating Systems - Networks OS

TYPE: Networks OS

Multiple vulnerabilities were identified in SonicWall Products.  A remote attacker could exploit some of these vulnerabilities to trigger elevation of privilege and security restriction bypass on the targeted system.

 

Note:

Exploit in the wild has been detected for CVE-2024-53704 that allows bypassing the authentication mechanism in certain versions of the SonicOS SSLVPN application. Hence, the risk level is rated as High Risk.

 

[Updated on 2025-02-12]

Updated Description.

 

[Updated on 2025-02-19]

Updated Description and Risk level changed to high.


Impact

  • Security Restriction Bypass
  • Elevation of Privilege

System / Technologies affected

  • Gen6 Hardware Firewalls version prior to 6.5.5.1-6n

  • Gen7 NSv version prior to 7.0.1-5165

  • Gen7 Firewalls prior to 7.1.3-7015

  • TZ80 prior to 8.0.0-8037


Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

Apply fixes issued by the vendor:


Vulnerability Identifier


Source


Related Link