Discovered by the Advanced Research Team at CrowdStrike, these flaws could allow attackers to bypass access controls, reach restricted services, or cause a denial-of-service condition by crashing the firewall.
Administrators are urged to apply the latest firmware updates immediately to secure their networks against potential exploitation.
The advisory outlines three distinct vulnerabilities affecting various generations of SonicWall firewalls.
These vulnerabilities impact a wide range of SonicWall hardware and virtual firewalls across Generation 6, 7, and 8 product lines.
SonicWall has released fixed firmware versions to resolve these security issues.
Administrators should upgrade to version 6.5.5.2-28n for Gen6 devices, 7.3.2-7010 for Gen7 devices, and 8.2.0-8009 for Gen8 devices.
If immediate patching is not possible, SonicWall strongly recommends implementing a temporary workaround to protect exposed devices.
You should completely disable HTTP and HTTPS-based firewall management as well as SSLVPN on all interfaces.
To maintain administrative control, restrict management access exclusively to SSH until you can apply the appropriate firmware updates.
Organizations operating Generation 6 firewalls must exercise caution when updating to the fixed version 6.5.5.2-28n.
SonicWall explicitly warns against downgrading from this patched firmware to any previous version.
Performing a firmware downgrade on Gen6 devices will result in the deletion of all LDAP users and a complete reset of all Multi-Factor Authentication configurations.
If a downgrade becomes necessary, administrators will need to reconfigure all LDAP and MFA settings afterward manually.
Always perform a full configuration backup before beginning the upgrade process to prevent data loss.
Follow us on Google News, LinkedIn, and X for daily cybersecurity updates. Contact us to feature your stories.
The post SonicWall SonicOS Vulnerabilities Allow Attackers to Bypass Access Controls and Crash Firewall appeared first on Cyber Security News.
Nintendo has dropped a surprise update for Super Mario Galaxy 2 that adds a new…
It’s been nearly three years since Mortal Kombat 1 came out, but developer NetherRealm has…
The Simpsons has mocked or referenced literature over its many seasons, usually through a book…
A new and more dangerous type of malware is quietly targeting Windows users by hiding…
A new and more dangerous type of malware is quietly targeting Windows users by hiding…
SonicWall has released a security advisory addressing three vulnerabilities in its SonicOS software. Discovered by…
This website uses cookies.