CVE-2023-34134

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jul 13, 2023
Updated: Jul 25, 2023
CWE ID 200

Summary

CVE-2023-34134 is a vulnerability affecting SonicWall GMS and Analytics versions 9.3.2-SP1 and earlier, as well as 2.5.0.4-R7 and earlier. An authenticated attacker can exploit this issue to obtain administrator password hashes through a web service call, posing a significant risk to sensitive information exposure. This vulnerability could potentially enable unauthorized access to affected systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • SonicWALL Global Management System

Affected Vendors

  • SonicWall Inc.