Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sonicwall sonicos vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2021-20046
A Stack-based buffer overflow in the SonicOS HTTP Content-Length response header allows a remote authenticated malicious user to cause Denial of Service (DoS) and potentially results in code execution in the firewall. This vulnerability affected SonicOS Gen 5, Gen 6 and Gen 7 fir...
Sonicwall Sonicos
8.8
CVSSv3
CVE-2021-20048
A Stack-based buffer overflow in the SonicOS SessionID HTTP response header allows a remote authenticated malicious user to cause Denial of Service (DoS) and potentially results in code execution in the firewall. This vulnerability affected SonicOS Gen 5, Gen 6 and Gen 7 firmware...
Sonicwall Sonicos
8.8
CVSSv3
CVE-2019-12257
Wind River VxWorks 6.6 up to and including 6.9 has a Buffer Overflow in the DHCP client component. There is an IPNET security vulnerability: Heap overflow in DHCP Offer/ACK parsing inside ipdhcpc.
Windriver Vxworks
Sonicwall Sonicos
Sonicwall Sonicos 6.2.7.1
Sonicwall Sonicos 6.2.7.7
Sonicwall Sonicos 6.2.7.0
Siemens Siprotec 5 Firmware
Netapp E-series Santricity Os Controller
Siemens Ruggedcom Win7000 Firmware
Siemens Ruggedcom Win7018 Firmware
Siemens Ruggedcom Win7025 Firmware
Siemens Ruggedcom Win7200 Firmware
Belden Hirschmann Hios
Belden Garrettcom Magnum Dx940e Firmware
1 Article
8.1
CVSSv3
CVE-2019-12263
Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4). There is an IPNET security vulnerability: TCP Urgent Pointer state confusion due to race condition.
Windriver Vxworks 7.0
Windriver Vxworks
Sonicwall Sonicos
Sonicwall Sonicos 6.2.7.1
Sonicwall Sonicos 6.2.7.7
Sonicwall Sonicos 6.2.7.0
Siemens Siprotec 5 Firmware
Netapp E-series Santricity Os Controller
Siemens Power Meter 9410 Firmware
Siemens Power Meter 9810 Firmware
Siemens Ruggedcom Win7000 Firmware
Siemens Ruggedcom Win7018 Firmware
Siemens Ruggedcom Win7025 Firmware
Siemens Ruggedcom Win7200 Firmware
Belden Hirschmann Hios
Belden Garrettcom Magnum Dx940e Firmware
1 Article
7.8
CVSSv3
CVE-2019-7487
Installation of the SonicOS SSLVPN NACagent 3.5 on the Windows operating system, an autorun value is created does not put the path in quotes, so if a malicious binary by an attacker within the parent path could allow code execution.
Sonicwall Sonicos
Sonicwall Sonicos Sslvpn Nacagent 3.5
7.5
CVSSv3
CVE-2023-41713
SonicOS Use of Hard-coded Password vulnerability in the 'dynHandleBuyToolbar' demo function.
Sonicwall Sonicos
7.5
CVSSv3
CVE-2023-0656
A Stack-based buffer overflow vulnerability in the SonicOS allows a remote unauthenticated malicious user to cause Denial of Service (DoS), which could cause an impacted firewall to crash.
Sonicwall Sonicos
1 Github repository
1 Article
7.5
CVSSv3
CVE-2022-22278
A vulnerability in SonicOS CFS (Content filtering service) returns a large 403 forbidden HTTP response message to the source address when users try to access prohibited resource this allows an malicious user to cause HTTP Denial of Service (DoS) attack
Sonicwall Tz300p Firmware
Sonicwall Tz300w Firmware
Sonicwall Tz350 Firmware
Sonicwall Tz350w Firmware
Sonicwall Nssp 10700 Firmware
Sonicwall Nssp 11700 Firmware
Sonicwall Nssp 12400 Firmware
Sonicwall Nssp 12800 Firmware
Sonicwall Nssp 13700 Firmware
Sonicwall Nssp 15700 Firmware
Sonicwall Tz370 Firmware
Sonicwall Tz370w Firmware
Sonicwall Tz400 Firmware
Sonicwall Nsv 10 Firmware
Sonicwall Nsv 100 Firmware
Sonicwall Nsv 1600 Firmware
Sonicwall Nsv 200 Firmware
Sonicwall Nsv 25 Firmware
Sonicwall Nsv 270 Firmware
Sonicwall Nsv 300 Firmware
Sonicwall Nsv 400 Firmware
Sonicwall Nsv 470 Firmware
7.5
CVSSv3
CVE-2022-22275
Improper Restriction of TCP Communication Channel in HTTP/S inbound traffic from WAN to DMZ bypassing security policy until TCP handshake potentially resulting in Denial of Service (DoS) attack if a target host is vulnerable.
Sonicwall Sonicos
7.5
CVSSv3
CVE-2021-20019
A vulnerability in SonicOS where the HTTP server response leaks partial memory by sending a crafted HTTP request, this can potentially lead to an internal sensitive data disclosure vulnerability.
Sonicwall Sonicos
Sonicwall Sonicos 6.0.5.3-94o
Sonicwall Sonicos 6.5.1.12-3n
Sonicwall Sonicosv 6.5.4.4-44v-21-955
Sonicwall Sonicos 6.5.4.7-83n
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
cross-site scripting
CVE-2024-5158
XML external entity
CVE-2024-4262
CVE-2024-2036
CVE-2024-4985
CVE-2024-21791
remote attackers
CVE-2023-43208
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
NEXT »