İçeriğe atla
Noroxi

sonicwall kayıtları

sonicwall üreticisine ait 236 yayımlanmış kayıt.

Tüm kayıtlar

236 kayıt
  • Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints

    KritikCVSS 10,0KEVSilahlaştırılmışEPSS %100

    apache · log4j10 Ara 2021

  • A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables allows a remote unauthentic

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    sonicwall · sma 200 firmware8 Ara 2021

  • An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %95

    sonicwall · sonicos9 Oca 2025

  • Apache Log4j2 Thread Context Message Pattern and Context Lookup Pattern vulnerable to a denial of service attack

    KritikCVSS 9,0KEVSilahlaştırılmışEPSS %100

    apache · log4j14 Ara 2021

  • Apache HTTP Server weakness in mod_rewrite when first segment of substitution matches filesystem path.

    KritikCVSS 9,1KEVSilahlaştırılmışEPSS %100

    apache · http server1 Tem 2024

  • A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %89

    sonicwall · email security9 Nis 2021

  • Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only access to unauthorized resources.

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %100

    sonicwall · sma 100 firmware17 Ara 2019

  • A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %93

    linux · linux kernel10 Mar 2022

  • Improper neutralization of special elements in the SMA100 SSL-VPN management interface allows a remote authenticated attacker with administr

    YüksekCVSS 7,2KEVSilahlaştırılmışEPSS %76

    sonicwall · sma 200 firmware5 Ara 2023

  • A SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %40

    sonicwall · sma 100 firmware4 Şub 2021

  • CVE-2021-20028
    78Bu hafta

    Improper neutralization of a SQL Command leading to SQL Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products, s

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %30

    sonicwall · sma 210 firmware4 Ağu 2021

  • CVE-2020-5135
    77Bu hafta

    A buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service (DoS) and potentially execute arbitrary code

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %27

    sonicwall · sonicos12 Eki 2020

  • CVE-2025-23006
    76Bu hafta

    Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %23

    sonicwall · sma8200v23 Oca 2025

  • CVE-2024-40766
    75Bu hafta

    An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %18

    sonicwall · sonicos23 Ağu 2024

  • CVE-2026-83548
    73Bu hafta

    A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path.

    KritikCVSS 10,0KEVSilahlaştırılmışEPSS %9

    sonicwall · sma8200v1 Eyl 2026

  • CVE-2026-15409
    72Bu hafta

    A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface.

    KritikCVSS 10,0KEVSilahlaştırılmışEPSS %7

    sonicwall · sma6210 firmware14 Tem 2026

  • CVE-2013-1359
    66Bu hafta

    An Authentication Bypass Vulnerability exists in DELL SonicWALL Analyzer 7.0, Global Management System (GMS) 4.1, 5.0, 5.1, 6.0, and 7.0; Un

    KritikCVSS 9,8SilahlaştırılmışEPSS %89

    sonicwall · analyzer11 Şub 2020

  • CVE-2021-20023
    64Bu hafta

    SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to read an arbitrary file on th

    OrtaCVSS 4,9KEVSilahlaştırılmışEPSS %51

    sonicwall · email security20 Nis 2021

  • CVE-2026-83549
    64Bu hafta

    Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identi

    YüksekCVSS 7,8KEVSilahlaştırılmışEPSS %11

    sonicwall · sma8200v1 Eyl 2026

  • CVE-2021-20022
    63Bu hafta

    SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to upload an arbitrary file to

    YüksekCVSS 7,2KEVSilahlaştırılmışEPSS %17

    sonicwall · email security9 Nis 2021

  • CVE-2024-6387
    62Bu hafta

    Openssh: regresshion - race condition in ssh allows rce/dos

    YüksekCVSS 8,1Kavram kanıtıEPSS %100

    sonicwall · sma 6200 firmware1 Tem 2024

  • CVE-2022-22274
    62Bu hafta

    A Stack-based buffer overflow vulnerability in the SonicOS via HTTP request allows a remote unauthenticated attacker to cause Denial of Serv

    KritikCVSS 9,8Kavram kanıtıEPSS %76

    sonicwall · sonicos25 Mar 2022

  • CVE-2019-12255
    62Bu hafta

    Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4).

    KritikCVSS 9,8Kavram kanıtıEPSS %75

    windriver · vxworks9 Ağu 2019

  • CVE-2026-15410
    62Bu hafta

    Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Man

    YüksekCVSS 7,2KEVSilahlaştırılmışEPSS %12

    sonicwall · sma6210 firmware14 Tem 2026

  • CVE-2023-34127
    61Bu hafta

    Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in SonicWall GMS, SonicWall Analyti

    YüksekCVSS 8,8SilahlaştırılmışEPSS %86

    sonicwall · analytics12 Tem 2023