SSL VPN Vulnerabilities

Hi,
Does the log produce any URLs that could be utilized to locate the vulnerability listed in the link below?
https://www.bleepingcomputer.com/news/security/sonicwall-firewall-exploit-lets-hackers-hijack-vpn-sessions-patch-now/
Additionally, what are the message IDs for VPN logon failures and successes?
Regards
Category: SSL VPN
0
Answers
I guess SonicWall did not disclose the internal URLs affected. It would not make any difference anyhow for securing your appliance.
Log Events are properly documented over here (if you're on Gen6 you need to search for the Gen6 reference documentation).
https://www.sonicwall.com/techdocs/pdf/SonicOS-X_7.0.1_LogEvents_ReferenceGuide.pdf
—Michael@BWC