CVE-2024-12803
CVSS 3.1 Score 7.2 of 10 (high)
Details
Published Jan 9, 2025
Updated: Jan 17, 2025
CWE ID 121
Summary
CVE-2024-12803 is a recently disclosed vulnerability affecting SonicOS management software. This post-authentication stack-based buffer overflow issue permits remote attackers to cause a firewall to crash. While crashing the firewall may be the intended outcome, there is a potential for further exploitation, potentially leading to code execution. This vulnerability poses a significant risk to networks utilizing SonicOS and requires immediate attention for patching.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.