Critical· 9.8actively exploitedofficial fix available
CVE-2024-53704
A flaw in SonicWall’s SSLVPN authentication lets attackers log in without proper credentials. The vulnerability can be exploited from anywhere over the internet. It affects many SonicWall devices and versions.
publishedJan 9, 2025
last modifiedAug 4, 2026
sourcesNVD · CISA-KEV
severity · cvss
9.8
critical · how bad it is
exploitation · epss
95%
100th percentile · chance of exploitation in 30 days
(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →
auto-deletes from the system
counting…on Sep 3, 2026
An official fix is available, so this entry is kept for 30 days and then removed automatically.
01
Who is affected
SonicWall devices running Sonicos, including version 7.1.2-7019, and various NSA, NSSP, NSV, and TZ270 models.
02
Real-world impact
An attacker could gain full control of the affected device, read or modify configuration, and potentially access the network behind it.
03
Why this severity
The CVSS score of 9.8 reflects that the flaw can be exploited remotely with no authentication, giving an attacker complete control over the device.
04
What to do about it
official fix available
recommended steps
- 01Follow vendor instructions to apply the recommended mitigations for the affected SonicWall devices.
- 02If no mitigations are available, discontinue use of the product.
CISA KEV required action
05
Timeline
- Jan 9, 2025 · Jan 9, 2025PublishedDisclosed and added to the National Vulnerability Database.
- Feb 18, 2025 · Feb 18, 2025Confirmed exploited (CISA KEV)CISA added it to the Known Exploited Vulnerabilities catalog — attackers are using it in the wild.
- Mar 11, 2025 · Mar 11, 2025CISA remediation deadlineFederal agencies are required to remediate by this date.
- Aug 4, 2026 · 2d agoAdvisory updatedThe NVD record was last revised.
- Aug 4, 2026 · 2d agoOfficial fix availableA vendor patch or mitigation now exists — see the remediation steps above.
06
How it’s attacked
Attack vectorNetwork (remote)
Attack complexityLow
Privileges requiredNone
User interactionNone needed
ScopeUnchanged
Confidentiality impactHigh
Integrity impactHigh
Availability impactHigh
07
References & advisories
- psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-000…vendor advisory
- cisa.gov/known-exploited-vulnerabili…us government resource
(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →