7.2
CVSSv3

CVE-2023-44221

Published: 05/12/2023 Updated: 13/12/2023
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

Improper neutralization of special elements in the SMA100 SSL-VPN management interface allows a remote authenticated attacker with administrative privilege to inject arbitrary commands as a 'nobody' user, potentially leading to OS Command Injection Vulnerability.

Vulnerable Product Search on Vulmon Subscribe to Product

sonicwall sma 200 firmware

sonicwall sma 210 firmware

sonicwall sma 400 firmware

sonicwall sma 410 firmware

sonicwall sma 500v firmware