References https://bishopfox.com/blog/sonicwall-cve-2024-53704-ssl-vpn-session-hijacking https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0003 https://nvd.nist.gov/vuln/detail/CVE-2024-53704 https://arcticwolf.com/resources/blog/cve-2024-53704/ https://www.sonicwall.com/support/notices/product-notice-sslvpn-and-ssh-vulnerability-in-sonicos/kA1VN0000000RBZ0A2 https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-53704.yaml https://cn-sec.com/archives/3768930.html https://www.51cto.com/article/808365.html https://attackerkb.com/topics/UB3P3xHVAo/cve-2024-53704 https://www.helpnetsecurity.com/2025/01/27/5000-sonicwall-firewalls-still-open-to-attack-vulnerability-cve-2024-53704/
Related VulnerabilitiesPoCCVE-2022-42475: Fortinet SSL-VPN - Heap-Based Buffer OverflowPoCCVE-2019-7481: SonicWall SRA 4600 VPN - SQL InjectionPoCCVE-2021-20031: SonicWall SonicOS 7.0 - Open RedirectPoCCVE-2021-20038: SonicWall SMA100 Stack - Buffer Overflow/Remote Code ExecutionPoCCVE-2023-0126: SonicWall SMA1000 LFIPoCCVE-2023-34124: SonicWall GMS and Analytics Web Services - Shell InjectionPoCCVE-2024-38475: Sonicwall - Pre-Authentication Arbitrary File ReadPoCCVE-2024-53704: SSL VPN Session HijackingPoCsonicwall-ssl-vpn-rce: SonicWall SSL-VPN 远程命令执行漏洞PoCCVE-2021-20021: SonicWall Email Security <= 10.0.9.x - Unauthenticated Admin Account CreationPoCCVE-2023-34133: SonicWall GMS and Analytics - SQL InjectionPoCsonicwall-nsm-log4j-rce: Sonicwall NSM - Remote Code Execution (Apache Log4j)