CVE-2024-12803

CVSS 3.1 Score 7.2 of 10 (high)

Details

Published Jan 9, 2025
Updated: Jan 17, 2025
CWE ID 121

Summary

CVE-2024-12803 is a recently disclosed vulnerability affecting SonicOS management software. This post-authentication stack-based buffer overflow issue permits remote attackers to cause a firewall to crash. While crashing the firewall may be the intended outcome, there is a potential for further exploitation, potentially leading to code execution. This vulnerability poses a significant risk to networks utilizing SonicOS and requires immediate attention for patching.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share