Sonicwall Sonicos vulnerabilities

77 known vulnerabilities affecting sonicwall/sonicos.

Total CVEs
77
CISA KEV
3
actively exploited
Public exploits
4
Exploited in wild
2
Severity breakdown
CRITICAL14HIGH32MEDIUM31

Vulnerabilities

Page 4 of 4
CVE-2019-7479HIGHCVSS 7.2≤ 5.9.1.12-4ov6.2.7.4-32n+7 more2019-12-31
CVE-2019-7479 [HIGH] CWE-285 CVE-2019-7479: A vulnerability in SonicOS allow authenticated read-only admin can elevate permissions to configurat A vulnerability in SonicOS allow authenticated read-only admin can elevate permissions to configuration mode. This vulnerability affected SonicOS Gen 5 version 5.9.1.12-4o and earlier, Gen 6 version 6.2.7.4-32n, 6.5.1.4-4n, 6.5.2.3-4n, 6.5.3.3-3n, 6.2.7.10-3n, 6.4.1.0-3n, 6.5.3.3-3n, 6.5.1.9-4n and SonicOSv 6.5.0.2-8v_RC363 (VMWARE), 6.5.0.2.8v_RC367 (A
cvelistv5nvd
CVE-2019-7487HIGHCVSS 7.8≤ 6.5.3.3v6.5.3.3 and earlier2019-12-19
CVE-2019-7487 [HIGH] CWE-428 CVE-2019-7487: Installation of the SonicOS SSLVPN NACagent 3.5 on the Windows operating system, an autorun value is Installation of the SonicOS SSLVPN NACagent 3.5 on the Windows operating system, an autorun value is created does not put the path in quotes, so if a malicious binary by an attacker within the parent path could allow code execution.
cvelistv5nvd
CVE-2019-12255CRITICALCVSS 9.8PoC≥ 5.9.0.0, ≤ 5.9.0.7≥ 5.9.1.0., ≤ 5.9.1.12+14 more2019-08-09
CVE-2019-12255 [CRITICAL] CWE-120 CVE-2019-12255: Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4). This is a IPNET securi Wind River VxWorks has a Buffer Overflow in the TCP component (issue 1 of 4). This is a IPNET security vulnerability: TCP Urgent Pointer = 0 that leads to an integer underflow.
nvd
CVE-2019-12256CRITICALCVSS 9.8≥ 5.9.0.0, ≤ 5.9.0.7≥ 5.9.1.0., ≤ 5.9.1.12+14 more2019-08-09
CVE-2019-12256 [CRITICAL] CWE-120 CVE-2019-12256: Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the IPv4 component. There is an IPNET securi Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the IPv4 component. There is an IPNET security vulnerability: Stack overflow in the parsing of IPv4 packets’ IP options.
nvd
CVE-2019-12261CRITICALCVSS 9.8≥ 5.9.0.0, ≤ 5.9.0.7≥ 5.9.1.0., ≤ 5.9.1.12+14 more2019-08-09
CVE-2019-12261 [CRITICAL] CWE-120 CVE-2019-12261: Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of 4). Wind River VxWorks 6.7 though 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 3 of 4). This is an IPNET security vulnerability: TCP Urgent Pointer state confusion during connect() to a remote host.
nvd
CVE-2019-12260CRITICALCVSS 9.8≥ 5.9.0.0, ≤ 5.9.0.7≥ 5.9.1.0., ≤ 5.9.1.12+14 more2019-08-09
CVE-2019-12260 [CRITICAL] CWE-120 CVE-2019-12260: Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4). This is an Wind River VxWorks 6.9 and vx7 has a Buffer Overflow in the TCP component (issue 2 of 4). This is an IPNET security vulnerability: TCP Urgent Pointer state confusion caused by a malformed TCP AO option.
nvd
CVE-2019-12257HIGHCVSS 8.8≥ 5.9.0.0, ≤ 5.9.0.7≥ 5.9.1.0., ≤ 5.9.1.12+14 more2019-08-09
CVE-2019-12257 [HIGH] CWE-120 CVE-2019-12257: Wind River VxWorks 6.6 through 6.9 has a Buffer Overflow in the DHCP client component. There is an I Wind River VxWorks 6.6 through 6.9 has a Buffer Overflow in the DHCP client component. There is an IPNET security vulnerability: Heap overflow in DHCP Offer/ACK parsing inside ipdhcpc.
nvd
CVE-2019-12263HIGHCVSS 8.1≥ 5.9.0.0, ≤ 5.9.0.7≥ 5.9.1.0., ≤ 5.9.1.12+14 more2019-08-09
CVE-2019-12263 [HIGH] CWE-362 CVE-2019-12263: Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4). There is Wind River VxWorks 6.9.4 and vx7 has a Buffer Overflow in the TCP component (issue 4 of 4). There is an IPNET security vulnerability: TCP Urgent Pointer state confusion due to race condition.
nvd
CVE-2019-12259HIGHCVSS 7.5≥ 5.9.0.0, ≤ 5.9.0.7≥ 5.9.1.0., ≤ 5.9.1.12+14 more2019-08-09
CVE-2019-12259 [HIGH] CWE-476 CVE-2019-12259: Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client componen Wind River VxWorks 6.6, 6.7, 6.8, 6.9 and vx7 has an array index error in the IGMPv3 client component. There is an IPNET security vulnerability: DoS via NULL dereference in IGMP parsing.
nvd
CVE-2019-12258HIGHCVSS 7.5PoC≥ 5.9.0.0, ≤ 5.9.0.7≥ 5.9.1.0., ≤ 5.9.1.12+14 more2019-08-09
CVE-2019-12258 [HIGH] CWE-384 CVE-2019-12258: Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component. This is a IPNET securi Wind River VxWorks 6.6 through vx7 has Session Fixation in the TCP component. This is a IPNET security vulnerability: DoS of TCP connection via malformed TCP options.
nvd
CVE-2019-12265MEDIUMCVSS 5.3≥ 5.9.0.0, ≤ 5.9.0.7≥ 5.9.1.0., ≤ 5.9.1.12+14 more2019-08-09
CVE-2019-12265 [MEDIUM] CWE-401 CVE-2019-12265: Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client compon Wind River VxWorks 6.5, 6.6, 6.7, 6.8, 6.9.3 and 6.9.4 has a Memory Leak in the IGMPv3 client component. There is an IPNET security vulnerability: IGMP Information leak via IGMPv3 specific membership report.
nvd
CVE-2019-7475CRITICALCVSS 9.8≤ 5.9.1.10v6.0.5.3-86o+8 more2019-04-02
CVE-2019-7475 [CRITICAL] CWE-284 CVE-2019-7475: A vulnerability in SonicWall SonicOS and SonicOSv with management enabled system on specific configu A vulnerability in SonicWall SonicOS and SonicOSv with management enabled system on specific configuration allow unprivileged user to access advanced routing services. This vulnerability affected SonicOS Gen 5 version 5.9.1.10 and earlier, Gen 6 version 6.2.7.3, 6.5.1.3, 6.5.2.2, 6.5.3.1, 6.2.7.8, 6.4.0.0, 6.5.1.8, 6.0.5.3-86o and SonicOSv 6.5.0.2-8
cvelistv5nvd
CVE-2019-7477HIGHCVSS 7.5≤ 5.9.1.10v6.0.5.3-86o+8 more2019-04-02
CVE-2019-7477 [HIGH] CWE-327 CVE-2019-7477: A vulnerability in SonicWall SonicOS and SonicOSv TLS CBC Cipher allow remote attackers to obtain se A vulnerability in SonicWall SonicOS and SonicOSv TLS CBC Cipher allow remote attackers to obtain sensitive plaintext data when CBC cipher suites are enabled. This vulnerability affected SonicOS Gen 5 version 5.9.1.10 and earlier, Gen 6 version 6.2.7.3, 6.5.1.3, 6.5.2.2, 6.5.3.1, 6.2.7.8, 6.4.0.0, 6.5.1.8, 6.0.5.3-86o and SonicOSv 6.5.0.2-8v_RC363 (VMWA
cvelistv5nvd
CVE-2019-7474MEDIUMCVSS 6.5≤ 5.9.1.10v6.0.5.3-86o+8 more2019-04-02
CVE-2019-7474 [MEDIUM] CWE-248 CVE-2019-7474: A vulnerability in SonicWall SonicOS and SonicOSv, allow authenticated read-only admin to leave the A vulnerability in SonicWall SonicOS and SonicOSv, allow authenticated read-only admin to leave the firewall in an unstable state by downloading certificate with specific extension. This vulnerability affected SonicOS Gen 5 version 5.9.1.10 and earlier, Gen 6 version 6.2.7.3, 6.5.1.3, 6.5.2.2, 6.5.3.1, 6.2.7.8, 6.4.0.0, 6.5.1.8, 6.0.5.3-86o and SonicOS
cvelistv5nvd
CVE-2018-9867MEDIUMCVSS 5.5≥ 5.0.0.0, ≤ 5.9.1.10v6.0.5.3-86o+8 more2019-02-19
CVE-2018-9867 [MEDIUM] CWE-285 CVE-2018-9867: In SonicWall SonicOS, administrators without full permissions can download imported certificates. Oc In SonicWall SonicOS, administrators without full permissions can download imported certificates. Occurs when administrators who are not in the SonicWall Administrators user group attempt to download imported certificates. This vulnerability affected SonicOS Gen 5 version 5.9.1.10 and earlier, Gen 6 version 6.2.7.3, 6.5.1.3, 6.5.2.2, 6.5.3.1, 6.2.7.8,
cvelistv5nvd
CVE-2018-5280MEDIUMCVSS 5.4v6.2.7.0v6.2.9.0+3 more2018-01-08
CVE-2018-5280 [MEDIUM] CWE-79 CVE-2018-5280: SonicWall SonicOS on Network Security Appliance (NSA) 2016 Q4 devices has XSS via the Configure SSO SonicWall SonicOS on Network Security Appliance (NSA) 2016 Q4 devices has XSS via the Configure SSO screens.
nvd
CVE-2015-3447MEDIUMCVSS 4.3≥ 6.0.0.0, ≤ 6.2.2.0v7.5.0.122015-04-29
CVE-2015-3447 [MEDIUM] CWE-79 CVE-2015-3447: Multiple cross-site scripting (XSS) vulnerabilities in macIpSpoofView.html in Dell SonicWall SonicOS Multiple cross-site scripting (XSS) vulnerabilities in macIpSpoofView.html in Dell SonicWall SonicOS 7.5.0.12 and 6.x allow remote attackers to inject arbitrary web script or HTML via the (1) searchSpoof or (2) searchSpoofIpDet parameter.
nvd