Security Advisory

CVE-2024-40762

9.8
CRITICAL

Vulnerability Description

Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) in the SonicOS SSLVPN authentication token generator that, in certain cases, can be predicted by an attacker potentially resulting in authentication bypass.
Published Date January 9, 2025
Official Source NIST NVD Advisory