📦

nsa_2600

Vendor: sonicwall

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 7 Remote Access
Total CVEs 14 Total Indexed
Avg. EPSS 1.05% Exploit Prob.
Latest CVE CVE-2023-41715 Oct 17

Security Vulnerability Index

Page 1 / 2
8.8 CVSS

SonicOS post-authentication Improper Privilege Management vulnerability in the SonicOS SSL VPN Tunnel allows users to elevate their privileges inside the tunnel.

EPSS: 0.65%
7.5 CVSS

SonicOS Use of Hard-coded Password vulnerability in the 'dynHandleBuyToolbar' demo function.

EPSS: 0.59%
6.5 CVSS

SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the SSL VPN plainprefs.exp URL endpoint leads to a firewall crash.

EPSS: 0.80%
6.5 CVSS

SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the sonicwall.exp, prefs.exp URL endpoints lead to a firewall crash.

EPSS: 0.80%
6.5 CVSS

SonicOS p ost-authentication Stack-Based Buffer Overflow vulnerability in the ssoStats-s.xml, ssoStats-s.wri URL endpoints leads to a firewall crash.

EPSS: 0.80%
6.5 CVSS

SonicOS post-authentication Stack-Based Buffer Overflow vulnerability in the getPacketReplayData.json URL endpoint leads to a firewall crash.

EPSS: 0.80%
6.5 CVSS

SonicOS post-authentication user assertion failure leads to Stack-Based Buffer Overflow vulnerability via main.cgi leads to a firewall crash.

EPSS: 0.80%
6.5 CVSS

SonicOS post-authentication stack-based buffer overflow vulnerability in the sonicflow.csv and appflowsessions.csv URL endpoints leads to a firewall crash.

EPSS: 0.80%
6.5 CVSS

SonicOS post-authentication stack-based buffer overflow vulnerability in the getBookmarkList.json URL endpoint leads to a firewall crash.

EPSS: 0.80%
8.8 CVSS

SonicOS SSLVPN improper restriction of excessive MFA attempts vulnerability allows an authenticated attacker to use excessive MFA codes.

EPSS: 0.68%