CVE-2024-40766

SonicWall SonicOS: Improper Access Control

As of , CVE-2024-40766 in SonicWall SonicOS is on CISA's list of exploited vulnerabilities: CISA listed it on . Our patch-first group: Patch this week.

Exploited
Yes: CISA listed it on 9 September 2024
US federal deadline
30 September 202421 days after CISA listed it. US federal civilian agencies must fix it by then.
Used in ransomware campaigns
Known
EPSS score
0.18Higher than 97% of the CVEs EPSS scores. EPSS estimates the chance of exploitation activity in the next 30 days.
EPSS when listed
0.00 on 9 September 2024EPSS on the day CISA listed it.
Public exploit
None foundNeither Metasploit nor Exploit-DB lists one.
Fix
Vendor advice: psirt.global.sonicwall.com and www.sonicwall.comLinks below, from CISA's entry.

What CISA says to do

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

CISA's required action

What the flaw is

SonicWall SonicOS contains an improper access control vulnerability that could lead to unauthorized resource access and, under certain conditions, may cause the firewall to crash.

CISA's description

An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the firewall to crash. This issue affects SonicWall Firewall Gen 5 and Gen 6 devices, as well as Gen 7 devices running SonicOS 7.0.1-5035 and older versions.

The CVE record's description, from sonicwall

CVE published
23 August 2024
Assigned by
sonicwall
CVSS
9.3 Critical (CVSS 3.1, from CISA-ADP)
CWE-284
Improper Access Control
CISA SSVC, exploitation
active
CISA SSVC, automatable
yes
CISA SSVC, technical impact
partial

Timeline

  1. The CVE record was published.
  2. CISA added it to its list of exploited vulnerabilities.
  3. The US federal deadline to fix it.
  4. CISA changed its entry. Edited: notes.

SonicOS: other exploited entries

VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2024-53704SSLVPN Improper AuthenticationSonicWall SonicOSPatch this weekRansomware use; EPSS 0.950.95
CVE-2020-5135Buffer OverflowSonicWall SonicOSPatch this weekRansomware use0.27

Read further