CVE Tools
Back to feed
Exploited in the wild SSL VPN component auth-bypass SonicWall network-edge

SonicWall-CVE2024-53704: Exploit Details Blog

Bishop Fox·By Jon Williams··2 min read

Summary

Bishop Fox researchers successfully exploited CVE-2024-53704, an authentication bypass in unpatched SonicWall firewalls that allows remote attackers to hijack active SSL VPN sessions and gain unauthorized network access.

While the vulnerability required significant reverse engineering to uncover, the exploit itself is trivial, emphasizing the urgency for organizations to apply SonicWall’s January 2025 patches.…

Continue reading on Bishop Fox