CVE-2024-53702: SonicWall SMA 200 Firmware
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Use of cryptographically weak pseudo-random number generator (PRNG) vulnerability in the SonicWall SMA100 SSLVPN backup code generator that, in certain cases, can be predicted by an attacker, potentially exposing the generated secret.
Affected products
- SonicWall SMA 200 Firmware: before 10.2.1.14-75sv (fixed in 10.2.1.14-75sv)
- SonicWall SMA 210 Firmware: before 10.2.1.14-75sv (fixed in 10.2.1.14-75sv)
- SonicWall SMA 400 Firmware: before 10.2.1.14-75sv (fixed in 10.2.1.14-75sv)
- SonicWall SMA 410 Firmware: before 10.2.1.14-75sv (fixed in 10.2.1.14-75sv)
- SonicWall SMA 500v Firmware: before 10.2.1.14-75sv (fixed in 10.2.1.14-75sv)
Published 2024-12-05. Last modified 2026-06-17.