CVE-2019-7483: SonicWall SMA100 Directory Traversal Vulnerability
Published Dec 19, 2019
·Updated
In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user to test for the presence of a file on the server.
Affected Software
5 affected components
SonicWall SMA100
All of the following
SonicWall Sma 100 Firmware<9.0.0.4
SonicWall SMA 100
SonicWall Sma 100 Firmware<=9.0.0.3
SonicWall SMA 100
Event History
Dec 19, 2019
CVE Published
via MITRE·12:35 AM
Data Sourced
via MITRE·12:35 AM
DescriptionWeakness
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Mar 28, 2022
Known Exploited
via CISA·12:00 AM
Frequently Asked Questions
1
What is CVE-2019-7483?
CVE-2019-7483 is a Directory Traversal vulnerability in SonicWall SMA100.
2
How does the SonicWall SMA100 Directory Traversal vulnerability work?
The SonicWall SMA100 Directory Traversal vulnerability allows an unauthenticated user to test for the presence of a file on the server.
3
Which software is affected by CVE-2019-7483?
The SonicWall SMA100 firmware up to and including version 9.0.0.3 is affected by CVE-2019-7483.
4
What is the severity of CVE-2019-7483?
CVE-2019-7483 has a severity level of high with a CVSS score of 7.5.
5
How can I fix CVE-2019-7483?
To fix CVE-2019-7483, update your SonicWall SMA100 firmware to a version higher than 9.0.0.3.