logo

SonicWall SonicOS Flaw allow attackers to bypass access controls and Crash Firewall

ID: bffd7813-6a14-5773-b777-5d62f24d9b99

STIX ID: report--bffd7813-6a14-5773-b777-5d62f24d9b99

Feed Name: Cyber Press

Threat Score
75/100

Date Published: 2026-04-30

Date Updated: 2026-04-30

Author: Lucas Martin

...
...

SonicWall released advisory SNWLID-2026-0004 disclosing three SonicOS vulnerabilities impacting Gen6/Gen7/Gen8 firewalls: CVE-2026-0204 (weak authentication, CVSS 8.0), CVE-2026-0205 (post-auth path traversal, CVSS 6.8), and CVE-2026-0206 (post-auth stack buffer overflow causing DoS, CVSS 4.9). SonicWall urges administrators to disable HTTP/HTTPS management and SSL‑VPN access until applying the provided firmware patches for each generation and to perform configuration backups and exposure audits.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.