Sonicwall

Sonicos

76 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 36.22%
  • Veröffentlicht 12.10.2021 23:15:07
  • Zuletzt bearbeitet 21.11.2024 05:45:49

A Host Header Redirection vulnerability in SonicOS potentially allows a remote attacker to redirect firewall management users to arbitrary web domains.

  • EPSS 1.05%
  • Veröffentlicht 23.06.2021 22:15:08
  • Zuletzt bearbeitet 21.11.2024 05:45:47

A vulnerability in SonicOS where the HTTP server response leaks partial memory by sending a crafted HTTP request, this can potentially lead to an internal sensitive data disclosure vulnerability.

  • EPSS 0.43%
  • Veröffentlicht 14.06.2021 23:15:07
  • Zuletzt bearbeitet 21.11.2024 05:45:48

A buffer overflow vulnerability in SonicOS allows a remote attacker to cause a Denial of Service (DoS) by sending a specially crafted request. This vulnerability affects SonicOS Gen5, Gen6, Gen7 platforms, and SonicOSv virtual firewalls.

  • EPSS 0.5%
  • Veröffentlicht 25.03.2021 15:15:13
  • Zuletzt bearbeitet 21.11.2024 06:21:33

The X509_V_FLAG_X509_STRICT flag enables additional security checks of the certificates present in a certificate chain. It is not set by default. Starting from OpenSSL version 1.1.1h a check to disallow certificates in the chain that have explicitly ...

  • EPSS 8.36%
  • Veröffentlicht 25.03.2021 15:15:13
  • Zuletzt bearbeitet 21.11.2024 06:21:33

An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms extension (where it was present in the initial ClientHello), but incl...

  • EPSS 0.14%
  • Veröffentlicht 12.10.2020 11:15:13
  • Zuletzt bearbeitet 21.11.2024 05:33:37

A stored cross-site scripting (XSS) vulnerability exists in the SonicOS SSLVPN web interface. A remote unauthenticated attacker is able to store and potentially execute arbitrary JavaScript code in the firewall SSLVPN portal. This vulnerability affec...

  • EPSS 0.51%
  • Veröffentlicht 12.10.2020 11:15:13
  • Zuletzt bearbeitet 21.11.2024 05:33:37

A vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS) on the firewall SSLVPN service by sending a malicious HTTP request that leads to memory addresses leak. This vulnerability affected SonicOS Gen 5 ver...

  • EPSS 0.46%
  • Veröffentlicht 12.10.2020 11:15:13
  • Zuletzt bearbeitet 21.11.2024 05:33:37

A vulnerability in SonicOS allows a remote unauthenticated attacker to brute force Virtual Assist ticket ID in the firewall SSLVPN service. This vulnerability affected SonicOS Gen 5 version 5.9.1.7, 5.9.1.13, Gen 6 version 6.5.4.7, 6.5.1.12, 6.0.5.3,...

  • EPSS 0.5%
  • Veröffentlicht 12.10.2020 11:15:13
  • Zuletzt bearbeitet 21.11.2024 05:33:37

SonicOS SSLVPN login page allows a remote unauthenticated attacker to perform firewall management administrator username enumeration based on the server responses. This vulnerability affected SonicOS Gen 5 version 5.9.1.7, 5.9.1.13, Gen 6 version 6.5...

  • EPSS 0.51%
  • Veröffentlicht 12.10.2020 11:15:12
  • Zuletzt bearbeitet 21.11.2024 05:33:36

A vulnerability in SonicOS SSLVPN service allows a remote unauthenticated attacker to cause Denial of Service (DoS) due to the release of Invalid pointer and leads to a firewall crash. This vulnerability affected SonicOS Gen 5 version 5.9.1.7, 5.9.1....