CVE-2020-5138
- EPSS 0.5%
- Veröffentlicht 12.10.2020 11:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:36
A Heap Overflow vulnerability in the SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS) on the firewall SSLVPN service and leads to SonicOS crash. This vulnerability affected SonicOS Gen 5 version 5.9.1.7, 5.9.1.13, Gen...
CVE-2020-5137
- EPSS 0.5%
- Veröffentlicht 12.10.2020 11:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:36
A buffer overflow vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS) on the firewall SSLVPN service and leads to firewall crash. This vulnerability affected SonicOS Gen 5 version 5.9.1.7, 5.9.1.13, Gen ...
CVE-2020-5136
- EPSS 0.31%
- Veröffentlicht 12.10.2020 11:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:36
A buffer overflow vulnerability in SonicOS allows an authenticated attacker to cause Denial of Service (DoS) in the SSL-VPN and virtual assist portal, which leads to a firewall crash. This vulnerability affected SonicOS Gen 5 version 5.9.1.7, 5.9.1.1...
CVE-2020-5135
- EPSS 22.59%
- Veröffentlicht 12.10.2020 11:15:12
- Zuletzt bearbeitet 31.10.2025 14:40:10
A buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a malicious request to the firewall. This vulnerability affected SonicOS Gen 6 version 6.5.4.7, 6.5...
CVE-2020-5134
- EPSS 0.38%
- Veröffentlicht 12.10.2020 11:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:36
A vulnerability in SonicOS allows an authenticated attacker to cause out-of-bound invalid file reference leads to a firewall crash. This vulnerability affected SonicOS Gen 6 version 6.5.1.12, 6.0.5.3, SonicOSv 6.5.4.v and Gen 7 version 7.0.0.0.
CVE-2020-5133
- EPSS 0.53%
- Veröffentlicht 12.10.2020 11:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:36
A vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service due to buffer overflow, which leads to a firewall crash. This vulnerability affected SonicOS Gen 6 version 6.5.1.12, 6.0.5.3, SonicOSv 6.5.4.v and Gen 7 ve...
CVE-2020-5132
- EPSS 0.17%
- Veröffentlicht 30.09.2020 06:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:36
SonicWall SSL-VPN products and SonicWall firewall SSL-VPN feature misconfiguration leads to possible DNS flaw known as domain name collision vulnerability. When the users publicly display their organization’s internal domain names in the SSL-VPN auth...
CVE-2020-5130
- EPSS 0.55%
- Veröffentlicht 17.07.2020 18:15:12
- Zuletzt bearbeitet 21.11.2024 05:33:35
SonicOS SSLVPN LDAP login request allows remote attackers to cause external service interaction (DNS) due to improper validation of the request. This vulnerability impact SonicOS version 6.5.4.4-44n and earlier.
CVE-2019-7479
- EPSS 0.25%
- Veröffentlicht 31.12.2019 02:15:10
- Zuletzt bearbeitet 21.11.2024 04:48:15
A vulnerability in SonicOS allow authenticated read-only admin can elevate permissions to configuration mode. This vulnerability affected SonicOS Gen 5 version 5.9.1.12-4o and earlier, Gen 6 version 6.2.7.4-32n, 6.5.1.4-4n, 6.5.2.3-4n, 6.5.3.3-3n, 6....
CVE-2019-7487
- EPSS 0.04%
- Veröffentlicht 19.12.2019 01:15:11
- Zuletzt bearbeitet 21.11.2024 04:48:16
Installation of the SonicOS SSLVPN NACagent 3.5 on the Windows operating system, an autorun value is created does not put the path in quotes, so if a malicious binary by an attacker within the parent path could allow code execution.