HomeVulnerabilityAlert: Over 178,000 SonicWall Firewalls Probably Weak to Exploits

Alert: Over 178,000 SonicWall Firewalls Probably Weak to Exploits

Over 178,000 SonicWall firewalls uncovered over the web are exploitable to a minimum of one of many two security flaws that could possibly be probably exploited to trigger a denial-of-service (DoS) situation and distant code execution (RCE).

“The 2 points are basically the identical however exploitable at totally different HTTP URI paths attributable to reuse of a susceptible code sample,” Jon Williams, a senior security engineer at Bishop Fox, mentioned in a technical evaluation shared with The Hacker Information.

The vulnerabilities in query are listed beneath –

  • CVE-2022-22274 (CVSS rating: 9.4) – A stack-based buffer overflow vulnerability within the SonicOS by way of HTTP request permits a distant, unauthenticated attacker to trigger DoS or probably lead to code execution within the firewall.
  • CVE-2023-0656 (CVSS rating: 7.5) – A stack-based buffer overflow vulnerability within the SonicOS permits a distant, unauthenticated attacker to trigger DoS, which might lead to a crash.

Whereas there aren’t any reviews of exploitation of the issues within the wild, a proof-of-concept (PoC) for CVE-2023-0656 was revealed by the SSD Safe Disclosure workforce April 2023.

The cybersecurity agency revealed that the problems could possibly be weaponized by dangerous actors to set off repeated crashes and drive the equipment to get into upkeep mode, requiring administrative motion to revive regular performance.

See also  Port shadow: One more VPN weak point ripe for exploit

“Maybe most astonishing was the invention that over 146,000 publicly-accessible units are susceptible to a bug that was revealed virtually two years in the past,” Williams mentioned.

The event comes as watchTowr Labs uncovered a number of stack-based buffer overflow flaws within the SonicOS administration net interface and SSL VPN portal that would result in a firewall crash.

To safeguard towards potential threats, it is advisable to replace to the final model and make sure that the administration interface is not uncovered to the web.

- Advertisment -spot_img
RELATED ARTICLES

LEAVE A REPLY

Please enter your comment!
Please enter your name here

- Advertisment -

Most Popular