QID 731154
Date Published: 2024-02-21
QID 731154: SonicWall SONICOS Improper Authentication Vulnerability (SNWLID-2024-0003)
An improper authentication vulnerability has been identified in SonicWall SonicOS SSL-VPN feature, which in specific conditions could allow a remote attacker to bypass authentication.
Affected Products:
This issue affects only firmware version SonicOS 7.1.1-7040.
QID Detection Logic(Unauthenticated):
This QID checks for the vulnerable version via SNMP "snmp-sysdescr".
Successful exploitation could allow a remote attacker to bypass authentication.
Solution
Vendor has released the Patch. Please refer to SNWLID-2024-0003
Vendor References
- SNWLID-2024-0003 -
psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0003
CVEs related to QID 731154
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| SNWLID-2024-0003 |
|