NA

CVE-2023-5970

Published: 05/12/2023 Updated: 13/12/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Improper authentication in the SMA100 SSL-VPN virtual office portal allows a remote authenticated malicious user to create an identical external domain user using accent characters, resulting in an MFA bypass.

Vulnerable Product Search on Vulmon Subscribe to Product

sonicwall sma_200_firmware

sonicwall sma_210_firmware

sonicwall sma_400_firmware

sonicwall sma_410_firmware

sonicwall sma_500v_firmware