CVE-2024-53705: SonicWall SonicOS
High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.
A Server-Side Request Forgery vulnerability in the SonicOS SSH management interface allows a remote attacker to establish a TCP connection to an IP address on any port when the user is logged in to the firewall.
Affected products
- SonicWall SonicOS: up to and including 6.5.4.15-117n; up to and including 7.0.1-5161; up to and including 7.1.1-7058; version 7.1.2-7019 only; version 8.0.0-8035 only
Published 2025-01-09. Last modified 2026-06-17.