CVE-2022-22278: High severity sonicwall tz300p firmware vulnerability
A vulnerability in SonicOS CFS (Content filtering service) returns a large 403 forbidden HTTP response message to the source address when users try to access prohibited resource this allows an attacker to cause HTTP Denial of Service (DoS) attack
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-22278?
The severity of CVE-2022-22278 is considered high due to its potential for causing a Denial of Service (DoS) attack.
How do I fix CVE-2022-22278?
To fix CVE-2022-22278, it is recommended to upgrade to SonicOS versions higher than 7.0.1.
What types of devices are affected by CVE-2022-22278?
CVE-2022-22278 affects SonicWall TZ series and NSSP devices running SonicOS versions below 7.0.1.
What kind of attack can CVE-2022-22278 lead to?
CVE-2022-22278 can lead to an HTTP Denial of Service (DoS) attack by causing excessive 403 forbidden responses.
Is CVE-2022-22278 a known vulnerability?
Yes, CVE-2022-22278 is a known vulnerability that was officially identified and documented for SonicWall devices.