Dual Critical Advisory: Critical Vulnerabilities in Veeam Backup & Replication and SonicWall SonicOS

Veeam Backup & Replication: Critical Patches for Vulnerabilities

Overview: Veeam released patches for 13 high-severity and five critical vulnerabilities, including an unauthenticated remote code execution (RCE) flaw in Veeam Backup & Replication (CVE-2024-40711), which has a CVSS score of 9.8. This vulnerability could allow attackers to fully take over a system, and security firm CODE WHITE, who discovered it, warned that disclosing technical details could lead to its exploitation by ransomware gangs.

Key Vulnerabilities:

  • Unauthenticated RCE: Exploitable without user authentication, allowing attackers to remotely execute code and compromise systems.
  • Other vulnerabilities could result in unauthorized access, data exposure, and system manipulation.

Recommendations:

  • Patch Immediately: Apply the latest Veeam updates to all affected systems.
  • Strengthen Monitoring: Implement enhanced monitoring for abnormal activity post-patch.
  • Backup Regularly: Ensure offsite and offline backups are available for quick restoration.

SonicWall SonicOS: Active Exploitation of CVE-2024-40766

Overview: A critical vulnerability has been discovered in SonicWall’s SonicOS Management Access and SSLVPN (CVE-2024-40766), potentially leading to unauthorized resource access. In some cases, this vulnerability can cause firewalls to crash. SonicWall has confirmed active exploitation in the wild, making this vulnerability particularly urgent.

Systems Affected:

  • SOHO (Gen 5) 5.9.2.14-12o and older versions
  • Gen6 Firewalls 6.5.4.14-109n and older versions
  • Gen7 Firewalls SonicOS build version 7.0.1-5035 and older versions

Threat Intelligence: SonicWall reports that CVE-2024-40766 is actively exploited, making the need for immediate action critical.

Risk:

  • Large and medium businesses: High
  • Small businesses: Medium
  • Home users: Low

Recommendations:

  • Apply Patches Immediately: Update SonicOS Management Access and SSLVPN systems with the latest security patches provided by SonicWall.
  • Implement Network Segmentation: Use logical network segmentation to isolate critical systems and reduce exposure.
  • Monitor and Respond: Ensure monitoring systems are in place to detect unauthorized access attempts, and develop a response plan for potential intrusions.

Secure your business with CyberHoot Today!!!

Share this on your social networks. Help Friends, Family, and Colleagues become more aware and secure.