← Back to browse · API

CVE-2023-34124

Severity
CRITICAL
CVSS
9.8
EPSS
0.46366
Risk score
55.43
CISA KEV
No
PoC
No
Published
2023-07-13
Modified
2025-04-08
First seen
2026-08-07
Aliases
EUVD-2023-38226, GHSA-XC4X-F462-G6P7
Products
SonicWall:Analytics 2.5.0.4-R7 and earlier versions, SonicWall:GMS 9.3.2-SP1 and earlier versions
Sources
euvd EUVD-2023-38226

Description

The authentication mechanism in SonicWall GMS and Analytics Web Services had insufficient checks, allowing authentication bypass. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.

References