CVE-2024-40762
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/01/2025
Last modified:
15/04/2026
Description
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) in the SonicOS SSLVPN authentication token generator that, in certain cases, can be predicted by an attacker potentially resulting in authentication bypass.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL



