A vulnerability in the SonicWall SMA100 SSLVPN

firmware 10.2.1.13-72sv and earlier versions allows a remote authenticated attacker can circumvent the certificate requirement during authentication.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 11 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00054}

epss

{'score': 0.00064}


Thu, 05 Dec 2024 17:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 05 Dec 2024 14:00:00 +0000

Type Values Removed Values Added
Description A vulnerability in the SonicWall SMA100 SSLVPN firmware 10.2.1.13-72sv and earlier versions allows a remote authenticated attacker can circumvent the certificate requirement during authentication.
Weaknesses CWE-798
References

cve-icon MITRE

Status: PUBLISHED

Assigner: sonicwall

Published:

Updated: 2024-12-05T16:56:09.484Z

Reserved: 2024-08-26T20:20:45.693Z

Link: CVE-2024-45319

cve-icon Vulnrichment

Updated: 2024-12-05T16:56:05.782Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-12-05T14:15:21.127

Modified: 2024-12-05T17:15:12.040

Link: CVE-2024-45319

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T22:31:33Z