CVE-2019-7475: Critical severity sonicwall sonicos vulnerability
A vulnerability in SonicWall SonicOS and SonicOSv with management enabled system on specific configuration allow unprivileged user to access advanced routing services. This vulnerability affected SonicOS Gen 5 version 5.9.1.10 and earlier, Gen 6 version 6.2.7.3, 6.5.1.3, 6.5.2.2, 6.5.3.1, 6.2.7.8, 6.4.0.0, 6.5.1.8, 6.0.5.3-86o and SonicOSv 6.5.0.2-8vRC363 (VMWARE), 6.5.0.2.8vRC367 (AZURE), SonicOSv 6.5.0.2.8vRC368 (AWS), SonicOSv 6.5.0.2.8vRC366 (HYPERV).
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this SonicWall vulnerability?
The vulnerability ID is CVE-2019-7475.
What is the severity rating of CVE-2019-7475?
The severity rating of CVE-2019-7475 is critical with a value of 9.8.
Which versions of SonicOS are affected by CVE-2019-7475?
SonicOS Gen 5 version 5.9.1.10 and earlier, Gen 6 versions 6.2.7.3, 6.5.1.3, 6.5.2.2, 6.5.3.1, 6.2.7.8, and 6.4.0.0 are affected by CVE-2019-7475.
How can an unprivileged user exploit CVE-2019-7475?
An unprivileged user can exploit CVE-2019-7475 by accessing advanced routing services on a SonicWall SonicOS or SonicOSv system with management enabled.
Where can I find more information about CVE-2019-7475?
You can find more information about CVE-2019-7475 at the following link: [SonicWall PSIRT](https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2019-0002)