A post-authentication Path Traversal vulnerability in SonicOS allows an attacker to interact with usually restricted services.
| Vendor | Product | Versions |
|---|---|---|
| sonicwall | sonicos | 6.5.5.1-6n and older versions, 7.0.1-5169 and older versions, 7.3.1-7013 and older versions, 8.1.0-8017 and older versions, 6.5.5.2-28n and older versions, 7.3.2-7010 and older versions, 8.2.0-8009 and older versions |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| sonicwall | sonicos | cert_advisory | 90% |
Updated affected versions and marked exploit as available.
Updated severity to CRITICAL, marked exploit as unavailable, and noted that the vulnerability is actively exploited.
Initial creation