CVE-2024-12802

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Jan 9, 2025
CWE ID 305

Summary

CVE-2024-12802 is a vulnerability affecting SonicWALL SSL-VPN that can bypass Multi-Factor Authentication (MFA). This issue arises due to the separate handling of User Principal Names (UPN) and Security Account Manager (SAM) account names when integrated with Microsoft Active Directory. Attackers can exploit this vulnerability by manipulating the alternative account name, potentially bypassing MFA for specific login methods. This could lead to unauthorized access to SSL-VPN protected networks and systems. Organizations using SonicWALL SSL-VPN and Microsoft Active Directory integration are advised to apply the available patch or configuration workaround to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share