Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-29012


Stack-based buffer overflow vulnerability in the SonicOS HTTP server allows an authenticated remote attacker to cause Denial of Service (DoS) via sscanf function.


Published

2024-06-20T09:15:11.347

Last Modified

2025-03-25T17:15:53.637

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-121
  • Type: Primary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System sonicwall sonicos < 7.0.1-5161 Yes
Operating System sonicwall sonicos < 7.1.1-7058 Yes
Operating System sonicwall sonicos < 7.1.2-7019 Yes
Hardware sonicwall nsa_2700 - No
Hardware sonicwall nsa_3700 - No
Hardware sonicwall nsa_4700 - No
Hardware sonicwall nsa_5700 - No
Hardware sonicwall nsa_6700 - No
Hardware sonicwall nssp_10700 - No
Hardware sonicwall nssp_11700 - No
Hardware sonicwall nssp_13700 - No
Hardware sonicwall nsv_270 - No
Hardware sonicwall nsv_470 - No
Hardware sonicwall nsv_870 - No
Hardware sonicwall tz270 - No
Hardware sonicwall tz270w - No
Hardware sonicwall tz370 - No
Hardware sonicwall tz370w - No
Hardware sonicwall tz470 - No
Hardware sonicwall tz470w - No
Hardware sonicwall tz570 - No
Hardware sonicwall tz570p - No
Hardware sonicwall tz570w - No
Hardware sonicwall tz670 - No

References