CVE-2022-1701

SonicWall SMA1000 series firmware 12.4.0, 12.4.1-02965 and earlier versions uses a shared and hard-coded encryption key to store data.
References
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:sonicwall:sma_6200_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_6200_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sma_6200:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:o:sonicwall:sma_6210_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_6210_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sma_6210:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
OR cpe:2.3:o:sonicwall:sma_7200_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_7200_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sma_7200:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
OR cpe:2.3:o:sonicwall:sma_7210_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_7210_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sma_7210:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
OR cpe:2.3:o:sonicwall:sma_8000v_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_8000v_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sma_8000v:-:*:*:*:*:*:*:*

History

14 Oct 2022, 01:18

Type Values Removed Values Added
CPE cpe:2.3:o:sonicwall:7210_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:7210_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:8000v_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:6200_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:6210_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:7200:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:6200:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:6210:-:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:7200_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:7210:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:8000v:-:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:6200_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:7200_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:8000v_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:6210_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sma_6210:-:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_6210_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_6200_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_6210_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sma_7210:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sma_7200:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sma_8000v:-:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_7200_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_7210_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_8000v_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_7210_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_7200_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:sma_6200:-:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_8000v_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:sma_6200_firmware:12.4.0:*:*:*:*:*:*:*

25 May 2022, 16:11

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5
References (CONFIRM) https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0009 - (CONFIRM) https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0009 - Vendor Advisory
CWE CWE-798
CPE cpe:2.3:h:sonicwall:7210:-:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:7200:-:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:7200_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:6200_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:7200_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:6210:-:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:8000v_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:6200:-:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:6210_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:8000v_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:7210_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:6210_firmware:12.4.1:*:*:*:*:*:*:*
cpe:2.3:h:sonicwall:8000v:-:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:7210_firmware:12.4.0:*:*:*:*:*:*:*
cpe:2.3:o:sonicwall:6200_firmware:12.4.0:*:*:*:*:*:*:*

13 May 2022, 21:07

Type Values Removed Values Added
New CVE

Information

Published : 2022-05-13 20:15

Updated : 2024-02-04 22:29


NVD link : CVE-2022-1701

Mitre link : CVE-2022-1701

CVE.ORG link : CVE-2022-1701


JSON object : View

Products Affected

sonicwall

  • sma_7200_firmware
  • sma_6210_firmware
  • sma_7200
  • sma_7210
  • sma_6200_firmware
  • sma_7210_firmware
  • sma_8000v_firmware
  • sma_8000v
  • sma_6200
  • sma_6210
CWE
CWE-798

Use of Hard-coded Credentials

CWE-321

Use of Hard-coded Cryptographic Key