CVE-2023-34134
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Jul 13, 2023
Updated: Jul 25, 2023
CWE ID 200
Summary
CVE-2023-34134 is a vulnerability affecting SonicWall GMS and Analytics versions 9.3.2-SP1 and earlier, as well as 2.5.0.4-R7 and earlier. An authenticated attacker can exploit this issue to obtain administrator password hashes through a web service call, posing a significant risk to sensitive information exposure. This vulnerability could potentially enable unauthorized access to affected systems.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- SonicWALL Global Management System
Affected Vendors
- SonicWall Inc.