← back
CVE-2023-5970observed exploitationCWE-287

CVE-2023-5970

25Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Attendepss 0.9%
from disclosure to weapon
Published on NVDDec 5
VulnCheck+688d
exploitation probability
0.9%top 42% of all CVEs
observed exploitation
yesVulnCheck
Improper authentication in the SMA100 SSL-VPN virtual office portal allows a remote authenticated attacker to create an identical external domain user using accent characters, resulting in an MFA bypass.
Affected products
SonicWall · SMA100