Conversion Hackers
Fealse: Tech News
SonicWall
  • Security

SonicWall Releases Patches for New Flaws Affecting SSLVPN SMA1000 Devices

  • May 14, 2022
  • admin
Total
0
Shares
0
0
0

SonicWall has published an advisory warning of a trio of security flaws in its Secure Mobile Access (SMA) 1000 appliances, including a high-severity authentication bypass vulnerability.

The weaknesses in question impact SMA 6200, 6210, 7200, 7210, 8000v running firmware versions 12.4.0 and 12.4.1. The list of vulnerabilities is below –

  • CVE-2022-22282 (CVSS score: 8.2) – Unauthenticated Access Control Bypass
  • CVE-2022-1702 (CVSS score: 6.1) – URL redirection to an untrusted site (open redirection)
  • CVE-2022-1701 (CVSS score: 5.7) – Use of a shared and hard-coded cryptographic key

Successful exploitation of the aforementioned bugs could allow an attacker to unauthorized access to internal resources and even redirect potential victims to malicious websites.

CyberSecurity

Tom Wyatt of the Mimecast Offensive Security Team has been credited with discovering and reporting the vulnerabilities.

SonicWall noted that the flaws do not affect SMA 1000 series running versions earlier than 12.4.0, SMA 100 series, Central Management Servers (CMS), and remote access clients.

SonicWall

Although there is no evidence that these vulnerabilities are being exploited in the wild, it’s recommended that users apply the fixes in the light of the fact that SonicWall appliances have presented an attractive bullseye in the past for ransomware attacks.

“There are no temporary mitigations,” the network security company said. “SonicWall urges impacted customers to implement applicable patches as soon as possible.”



Total
0
Shares
Share 0
Tweet 0
Pin it 0
admin

Previous Article
Reggie Doesn't Seem To Think Nintendo Has "Abandoned" F-Zero, Says There's Still Hope
  • Games

Reggie Doesn’t Seem To Think Nintendo Has “Abandoned” F-Zero, Says There’s Still Hope

  • May 14, 2022
  • admin
View Post
Next Article
Random: Former Nintendo Employee Admits He Was "Really Worried" About Leaking Saucy Waluigi Artwork
  • Games

Random: Former Nintendo Employee Admits He Was “Really Worried” About Leaking Saucy Waluigi Artwork

  • May 14, 2022
  • admin
View Post
You May Also Like
U.S. Charges Venezuelan Doctor for Using and Selling Thanos Ransomware
View Post
  • Security

U.S. Charges Venezuelan Doctor for Using and Selling Thanos Ransomware

  • admin
  • May 17, 2022
Androids with Password Stealer
View Post
  • Security

Over 200 Apps on Play Store Caught Spying on Android Users Using Facestealer

  • admin
  • May 17, 2022
Zyxel Firewalls RCE Vulnerability
View Post
  • Security

Watch Out! Hackers Begin Exploiting Recent Zyxel Firewalls RCE Vulnerability

  • admin
  • May 17, 2022
Astrix Security Emerges From Stealth With $15M Seed Round
View Post
  • Security

TorchLight Expands Cybersecurity Services With MDR Sentinel in Partnership With Microsoft

  • admin
  • May 16, 2022
Astrix Security Emerges From Stealth With $15M Seed Round
View Post
  • Security

RF Technologies Releases Safe Place Staff Protection for Healthcare Settings

  • admin
  • May 16, 2022
50% of Orgs Rely on Email to Manage Security
View Post
  • Security

50% of Orgs Rely on Email to Manage Security

  • admin
  • May 16, 2022
iPhones Open to Attack Even When Off, Researchers Say
View Post
  • Security

iPhones Open to Attack Even When Off, Researchers Say

  • admin
  • May 16, 2022
Open Source Security Gets $150M Boost From Industry Heavy Hitters
View Post
  • Security

Open Source Security Gets $150M Boost From Industry Heavy Hitters

  • admin
  • May 16, 2022

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Categories
  • Apps
  • Games
  • How To
  • News
  • Photography
  • Reviews
  • Security

Input your search keywords and press Enter.