What the vulnerability does

01Description

A post-authentication absolute path traversal vulnerability in SonicOS management allows a remote attacker to read an arbitrary file.

Key dates

02Disclosure timeline

January 9, 2025 CVE published
January 17, 2025 Record updated