SonicWall Gen6 SSL-VPN MFA Bypass | MSSP Advisory
Critical
DateMay 21, 2026
📋Executive Summary
Attackers are exploiting CVE-2024-12802 to bypass multi-factor authentication on SonicWall Gen6 SSL-VPN appliances. The vulnerability allows threat actors to use a specific user principal name login format to completely circumvent MFA protections. This affects Gen6 SSL-VPN devices specifically.
⚠️Why It Matters for MSSPs
SonicWall VPN appliances are common in MSSP client environments and your own stack for remote access management. When MFA bypass works, attackers get direct network access without credential theft or social engineering. Your clients trust that MFA protects their perimeter, and this vulnerability makes that assumption wrong.
📬
Get notified when client-ready advisories like this are published each week.
Join the MSSP Watchlist →🏷️Threat Category
Zero-Day
Partner MSSPs receive the full advisory — talking points, actions, and social posts — under their own brand.