Security Advisory

CVE-2023-5970

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-05 20:20:01
Last updated 2024-08-02 08:14:25
Assigner sonicwall
State PUBLISHED

Description

Improper authentication in the SMA100 SSL-VPN virtual office portal allows a remote authenticated attacker to create an identical external domain user using accent characters, resulting in an MFA bypass.