logo

SonicWall warns of critical access control flaw in SonicOS

ID: 4a388a3e-e135-5f2d-bc80-2d6ed3b68dad

STIX ID: report--4a388a3e-e135-5f2d-bc80-2d6ed3b68dad

Feed Name: Bleeping Computer

Threat Score
78/100

Date Published: 2024-08-26

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

SonicWall disclosed CVE-2024-40766, a critical improper access control flaw in SonicOS (CVSS 9.3) affecting Gen 5/6/7 devices that can allow unauthorized access or cause device crashes; SonicWall has released firmware updates and advises restricting management access or disabling WAN management until patches are applied.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.