CPE
critical
threat
Active Exploitation of SonicWall SMA 1000 Series Appliances by Ransomware Actors
1 TTP 1 CVECISA has added CVE-2024-40766 to its Known Exploited Vulnerabilities catalog after reports that ransomware actors are leveraging the flaw in SonicWall SMA 1000 series appliances to gain initial access to enterprise networks.
exploited
SMA 1000
ransomware
vulnerability
cve-2024-40766
1t
1c
critical
advisory
Multiple Vulnerabilities in SonicWall Firewalls Allow Remote Code Execution and Privilege Escalation
1 rule 3 TTPs 4 CVEsMultiple vulnerabilities have been disclosed in SonicWall Gen6 and Gen7 firewalls, SonicOS, and NSv that can be exploited for authentication bypass, remote code execution, and privilege escalation, specifically CVE-2024-40762, CVE-2024-53704, CVE-2024-53705, and CVE-2024-53706; a proof of concept exploit is available for CVE-2024-53704, which, if exploited, can lead to internal network access and further attacks, including ransomware deployment.
Gen6 Hardware Firewalls +5
sonicwall
firewall
rce
authentication-bypass
privilege-escalation
1r
3t
4c