CVE-2023-5970
25Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck.
ssvc Attendepss 0.9%
from disclosure to weapon
Published on NVDDec 5
VulnCheck+688d
exploitation probability
0.9%top 42% of all CVEs
observed exploitation
yesVulnCheck
Improper authentication in the SMA100 SSL-VPN virtual office portal allows a remote authenticated attacker to create an identical external domain user using accent characters, resulting in an MFA bypass.
Affected products
SonicWall · SMA100