SonicWall GMS and Analytics use outdated Tiny Encryption Algorithm (TEA) with a hardcoded key to encrypt sensitive data. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.
                
            References
                    | Link | Resource | 
|---|---|
| https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0010 | Vendor Advisory | 
| https://www.sonicwall.com/support/notices/230710150218060 | Vendor Advisory | 
| https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0010 | Vendor Advisory | 
| https://www.sonicwall.com/support/notices/230710150218060 | Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2023-07-13 02:15
Updated : 2024-11-21 08:06
NVD link : CVE-2023-34130
Mitre link : CVE-2023-34130
CVE.ORG link : CVE-2023-34130
JSON object : View
Products Affected
                sonicwall
- analytics
- global_management_system
CWE
                
                    
                        
                        CWE-327
                        
            Use of a Broken or Risky Cryptographic Algorithm
