CVE-2023-34137
SonicWall GMS and Analytics CAS Web Services application use static values for authentication without proper checks lead
SonicWall GMS and Analytics CAS Web Services application use static values for authentication without proper checks leading to authentication bypass vulnerability. This issue affects GMS: 9.3.2-SP1 and earlier versions.
Analytics: 2.5.0.4-R7 and earlier versions.
CRITICAL · CVSS 9.8
EPSS 0.00081
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0