CVE-2024-12805
Severity CVSS v4.0:
Pending analysis
Type:
CWE-134
Format String Vulnerability
Publication date:
09/01/2025
Last modified:
15/04/2026
Description
A post-authentication format string vulnerability in SonicOS management allows a remote attacker to crash a firewall and potentially leads to code execution.
Impact
Base Score 3.x
7.20
Severity 3.x
HIGH



