First published: Tue Dec 05 2023(Updated: )
Improper neutralization of special elements in the SMA100 SSL-VPN management interface allows a remote authenticated attacker with administrative privilege to inject arbitrary commands as a 'nobody' user, potentially leading to OS Command Injection Vulnerability.
Credit: PSIRT@sonicwall.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Sonicwall Sma 200 Firmware | <=10.2.1.9-57sv | |
Sonicwall Sma 200 | ||
All of | ||
Sonicwall Sma 210 Firmware | <=10.2.1.9-57sv | |
Sonicwall Sma 210 | ||
All of | ||
Sonicwall Sma 400 Firmware | <=10.2.1.9-57sv | |
Sonicwall Sma 400 | ||
All of | ||
Sonicwall Sma 410 Firmware | <=10.2.1.9-57sv | |
Sonicwall Sma 410 | ||
All of | ||
Sonicwall Sma 500v Firmware | <=10.2.1.9-57sv | |
Sonicwall Sma 500v |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.