📦

nsv_1600

Vendor: sonicwall

Actively Exploited 0 CISA KEV List
PoC / Exploits 3 Code Available
Total RCEs 3 Remote Access
Total CVEs 10 Total Indexed
Avg. EPSS 11.99% Exploit Prob.
Latest CVE CVE-2023-1101 Mar 02

Security Vulnerability Index

Page 1 / 1
8.8 CVSS

SonicOS SSLVPN improper restriction of excessive MFA attempts vulnerability allows an authenticated attacker to use excessive MFA codes.

EPSS: 0.68%
7.5 CVSS
CVE-2023-0656
RCE Exploit Found

A Stack-based buffer overflow vulnerability in the SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS), which could cause an impacted firewall to crash.

EPSS: 41.32%
7.5 CVSS

A vulnerability in SonicOS CFS (Content filtering service) returns a large 403 forbidden HTTP response message to the source address when users try to access prohibited resource this allows an attacker to cause HTTP Denial of Service (DoS) attack

EPSS: 0.90%
5.3 CVSS

A vulnerability in SonicOS SNMP service resulting exposure of Wireless Access Point sensitive information in cleartext.

EPSS: 0.74%
5.3 CVSS

A vulnerability in SonicOS SNMP service resulting exposure of sensitive information to an unauthorized user.

EPSS: 0.74%
9.8 CVSS
CVE-2022-22274
Exploit Found

A Stack-based buffer overflow vulnerability in the SonicOS via HTTP request allows a remote unauthenticated attacker to cause Denial of Service (DoS) or potentially results in code execution in the firewall.

EPSS: 57.32%
8.8 CVSS

A Stack-based buffer overflow in the SonicOS SessionID HTTP response header allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in code execution in the firewall. This vulnerability affected SonicOS Gen 5, Gen 6 and Gen 7 firmware versions.

EPSS: 1.94%
8.8 CVSS

A Stack-based buffer overflow in the SonicOS HTTP Content-Length response header allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in code execution in the firewall. This vulnerability affected SonicOS Gen 5, Gen 6 and Gen 7 firmware versions.

EPSS: 1.94%
6.1 CVSS
CVE-2021-20031
Exploit Found

A Host Header Redirection vulnerability in SonicOS potentially allows a remote attacker to redirect firewall management users to arbitrary web domains.

EPSS: 13.04%
7.5 CVSS

A buffer overflow vulnerability in SonicOS allows a remote attacker to cause a Denial of Service (DoS) by sending a specially crafted request. This vulnerability affects SonicOS Gen5, Gen6, Gen7 platforms, and SonicOSv virtual firewalls.

EPSS: 1.29%