CVE-2022-1701
Published on: Not Yet Published
Last Modified on: 10/14/2022 01:18:00 AM UTC
Certain versions of 6200 from Sonicwall contain the following vulnerability:
SonicWall SMA1000 series firmware 12.4.0, 12.4.1-02965 and earlier versions uses a shared and hard-coded encryption key to store data.
- CVE-2022-1701 has been assigned by
[email protected] to track the vulnerability - currently rated as HIGH severity.
- Affected Vendor/Software:
SonicWall - SonicWall SMA1000 version 12.4.0
- Affected Vendor/Software:
SonicWall - SonicWall SMA1000 version 12.4.1
CVSS3 Score: 7.5 - HIGH
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
NETWORK | LOW | NONE | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | HIGH | NONE | NONE |
CVSS2 Score: 5 - MEDIUM
Access Vector ⓘ |
Access Complexity |
Authentication |
---|---|---|
NETWORK | LOW | NONE |
Confidentiality Impact |
Integrity Impact |
Availability Impact |
PARTIAL | NONE | NONE |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Security Advisory | psirt.global.sonicwall.com text/html |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Hardware
| Sonicwall | 6200 | - | All | All | All |
Operating System | Sonicwall | 6200 Firmware | 12.4.0 | All | All | All |
Operating System | Sonicwall | 6200 Firmware | 12.4.1 | All | All | All |
Hardware
| Sonicwall | 6210 | - | All | All | All |
Operating System | Sonicwall | 6210 Firmware | 12.4.0 | All | All | All |
Operating System | Sonicwall | 6210 Firmware | 12.4.1 | All | All | All |
Hardware
| Sonicwall | 7200 | - | All | All | All |
Operating System | Sonicwall | 7200 Firmware | 12.4.0 | All | All | All |
Operating System | Sonicwall | 7200 Firmware | 12.4.1 | All | All | All |
Hardware
| Sonicwall | 7210 | - | All | All | All |
Operating System | Sonicwall | 7210 Firmware | 12.4.0 | All | All | All |
Operating System | Sonicwall | 7210 Firmware | 12.4.1 | All | All | All |
Hardware
| Sonicwall | 8000v | - | All | All | All |
Operating System | Sonicwall | 8000v Firmware | 12.4.0 | All | All | All |
Operating System | Sonicwall | 8000v Firmware | 12.4.1 | All | All | All |
Hardware
| Sonicwall | Sma 6200 | - | All | All | All |
Operating System | Sonicwall | Sma 6200 Firmware | 12.4.0 | All | All | All |
Operating System | Sonicwall | Sma 6200 Firmware | 12.4.1 | All | All | All |
Hardware
| Sonicwall | Sma 6210 | - | All | All | All |
Operating System | Sonicwall | Sma 6210 Firmware | 12.4.0 | All | All | All |
Operating System | Sonicwall | Sma 6210 Firmware | 12.4.1 | All | All | All |
Hardware
| Sonicwall | Sma 7200 | - | All | All | All |
Operating System | Sonicwall | Sma 7200 Firmware | 12.4.0 | All | All | All |
Operating System | Sonicwall | Sma 7200 Firmware | 12.4.1 | All | All | All |
Hardware
| Sonicwall | Sma 7210 | - | All | All | All |
Operating System | Sonicwall | Sma 7210 Firmware | 12.4.0 | All | All | All |
Operating System | Sonicwall | Sma 7210 Firmware | 12.4.1 | All | All | All |
Hardware
| Sonicwall | Sma 8000v | - | All | All | All |
Operating System | Sonicwall | Sma 8000v Firmware | 12.4.0 | All | All | All |
Operating System | Sonicwall | Sma 8000v Firmware | 12.4.1 | All | All | All |
- cpe:2.3:h:sonicwall:6200:-:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:6200_firmware:12.4.0:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:6200_firmware:12.4.1:*:*:*:*:*:*:*:
- cpe:2.3:h:sonicwall:6210:-:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:6210_firmware:12.4.0:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:6210_firmware:12.4.1:*:*:*:*:*:*:*:
- cpe:2.3:h:sonicwall:7200:-:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:7200_firmware:12.4.0:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:7200_firmware:12.4.1:*:*:*:*:*:*:*:
- cpe:2.3:h:sonicwall:7210:-:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:7210_firmware:12.4.0:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:7210_firmware:12.4.1:*:*:*:*:*:*:*:
- cpe:2.3:h:sonicwall:8000v:-:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:8000v_firmware:12.4.0:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:8000v_firmware:12.4.1:*:*:*:*:*:*:*:
- cpe:2.3:h:sonicwall:sma_6200:-:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:sma_6200_firmware:12.4.0:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:sma_6200_firmware:12.4.1:*:*:*:*:*:*:*:
- cpe:2.3:h:sonicwall:sma_6210:-:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:sma_6210_firmware:12.4.0:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:sma_6210_firmware:12.4.1:*:*:*:*:*:*:*:
- cpe:2.3:h:sonicwall:sma_7200:-:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:sma_7200_firmware:12.4.0:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:sma_7200_firmware:12.4.1:*:*:*:*:*:*:*:
- cpe:2.3:h:sonicwall:sma_7210:-:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:sma_7210_firmware:12.4.0:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:sma_7210_firmware:12.4.1:*:*:*:*:*:*:*:
- cpe:2.3:h:sonicwall:sma_8000v:-:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:sma_8000v_firmware:12.4.0:*:*:*:*:*:*:*:
- cpe:2.3:o:sonicwall:sma_8000v_firmware:12.4.1:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2022-1701 : SonicWall SMA1000 series firmware 12.4.0, 12.4.1-02965 and earlier versions uses a shared and hard-… twitter.com/i/web/status/1… | 2022-05-13 19:47:16 |
![]() |
CVE-2022-1701 | 2022-05-13 20:38:16 |
![]() |
MS-ISAC CYBERSECURITY ADVISORY - Multiple Vulnerabilities in SonicWall SSLVPN SMA1000 Series Could Allow for Authentication Bypass - PATCH: NOW | 2022-05-16 12:54:37 |
![]() |
Security Advisory: SonicWall Authentication Vulnerability | 2022-05-16 14:25:42 |