HomeDefault status
unknown
12.4.3-03245 (platform-hotfix) and earlier versions.
affected
12.5.0-02283 (platform-hotfix) and earlier versions.
affected
Description
Improper handling of Unicode encoding in SonicWall SMA1000 series appliances allows a remote authenticated SSLVPN user to bypass Workplace/Connect Tunnel TOTP authentication.
Problem types
CWE-176 Improper handling of unicode encoding
Product status
12.4.3-03245 (platform-hotfix) and earlier versions.
12.5.0-02283 (platform-hotfix) and earlier versions.
References
psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0003