07.13.2023

Sonicwall Critical Security Updates

Alert
  • facebook share link
  • twitter share link
  • linkedin share link
  • mail share link

Date of Notice: 07/13/2023

Action Level - Critical

Description

Sonicwall has released updates patching multiple critical vulnerabilities on their GMS Firewall Management and Analytics Network Reporting Engine software. If exploited they could allow an attacker to bypass authentication and access sensitive data on a vulnerable device. While there are no reports of active exploitation yet, due to the serious nature of these vulnerabilities Sonicwall recommends investigating potentially impacted devices and updating to a fixed version if you are affected.

Affected Versions

  • GMS - Virtual Appliance 9.3.2-SP1 and earlier versions
  • GMS - Windows 9.3.2-SP1 and earlier versions
  • Analytics - 2.5.0.4-R7 and earlier versions

Attack Vector

An attacker with network or local access to a device with these tools

Attack Feasibility 

There are currently no reported exploits for this vulnerability.

Mitigation

There are no mitigations to these vulnerabilities

Remediation

Update to a current supported version of Sonicwall GMS and Analytics.

<-- Return to Cybersecurity Alerts...

MCNC
PO Box 12889
3021 East Cornwallis Road
RTP, NC 27709-2889
919-248-1900 Phone | 919-248-1101 Fax
Connect With Us
  • linkedin
  • instagram
  • x
  • facebook
  • youtube
© 2024 MCNC