Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 10 Jan 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 09 Jan 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 09 Jan 2025 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) in the SonicOS SSLVPN authentication token generator that, in certain cases, can be predicted by an attacker potentially resulting in authentication bypass. | |
| Weaknesses | CWE-338 | |
| References |
|
Status: PUBLISHED
Assigner: sonicwall
Published:
Updated: 2025-01-09T15:08:11.330Z
Reserved: 2024-07-10T15:58:49.461Z
Link: CVE-2024-40762
Updated: 2025-01-09T15:08:03.732Z
Status : Deferred
Published: 2025-01-09T07:15:26.730
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-40762
No data.
OpenCVE Enrichment
Updated: 2025-07-13T21:07:01Z