An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the firewall to crash. This issue affects SonicWall Firewall Gen 5 and Gen 6 devices, as well as Gen 7 devices running SonicOS 7.0.1-5035 and older versions.
References
Link | Resource |
---|---|
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0015 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
History
11 Sep 2024, 11:14
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:sonicwall:nsa_2650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_500:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz270w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_11700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_4600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz570w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz670:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_400w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_6650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_5600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_10700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz370w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9400:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz570:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz470:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9200:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_300w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_400:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_5650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz370:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_300:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_600p:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_13700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm9800:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_12400:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9250:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_300p:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_3650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_3700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_6700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz470w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:soho:-:*:*:*:*:*:*:* cpe:2.3:o:sonicwall:sonicos:*:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_12800:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:soho_250:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_350:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz270:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_4650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_4700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_3600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:soho_250w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_500w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz570p:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_350w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_5700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9450:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sohow:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_6600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_2700:-:*:*:*:*:*:*:* |
|
CWE | NVD-CWE-noinfo | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
First Time |
Sonicwall tz 300p
Sonicwall tz 400w Sonicwall nsa 2650 Sonicwall nsa 3600 Sonicwall sonicos Sonicwall nsa 4650 Sonicwall tz 500w Sonicwall nsa 5600 Sonicwall tz 400 Sonicwall tz270w Sonicwall soho Sonicwall nssp 12800 Sonicwall sm9800 Sonicwall nsa 4700 Sonicwall tz 350w Sonicwall nsa 6700 Sonicwall nssp 11700 Sonicwall nsa 2700 Sonicwall tz570p Sonicwall tz370w Sonicwall nssp 10700 Sonicwall nsa 4600 Sonicwall Sonicwall nsa 5650 Sonicwall sm 9650 Sonicwall nsa 6650 Sonicwall tz270 Sonicwall tz670 Sonicwall sohow Sonicwall tz470w Sonicwall tz570 Sonicwall tz 600p Sonicwall tz 350 Sonicwall nssp 12400 Sonicwall sm 9450 Sonicwall soho 250 Sonicwall tz 300 Sonicwall soho 250w Sonicwall sm 9400 Sonicwall sm 9600 Sonicwall nsa 5700 Sonicwall nsa 3700 Sonicwall sm 9200 Sonicwall tz370 Sonicwall tz 500 Sonicwall tz 300w Sonicwall tz470 Sonicwall nssp 13700 Sonicwall tz 600 Sonicwall tz570w Sonicwall nsa 3650 Sonicwall sm 9250 Sonicwall nsa 6600 |
|
References | () https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2024-0015 - Vendor Advisory |
23 Aug 2024, 07:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-23 07:15
Updated : 2024-09-16 19:48
NVD link : CVE-2024-40766
Mitre link : CVE-2024-40766
JSON object : View
Products Affected
sonicwall
- tz670
- sohow
- tz_600
- tz_300p
- nsa_5650
- tz_400
- tz_400w
- tz_500w
- tz470w
- sm_9250
- soho_250w
- tz570
- nsa_6700
- sm_9450
- tz570p
- sm_9650
- tz_350w
- tz270
- sm_9600
- tz_350
- tz_500
- nsa_4700
- nssp_11700
- nsa_6600
- tz370w
- sm_9400
- sm9800
- tz_300
- nssp_10700
- nssp_13700
- tz270w
- nsa_2700
- tz570w
- nssp_12400
- tz470
- nsa_3600
- nsa_5700
- nsa_3700
- nsa_5600
- nsa_3650
- tz_600p
- nsa_4650
- soho_250
- nsa_2650
- soho
- nssp_12800
- tz_300w
- tz370
- nsa_6650
- sm_9200
- nsa_4600
- sonicos
CWE