sonicwall

250 tracked vulnerabilities.

CVE-2026-0206 MEDIUM
SonicOS < 6.5.5.1-6n, < 7.0.1-5169, < 7.3.1-7013, < 8.1.0-8017 - Authenticated Stack-based Buffer Overflow
Apr 29, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-0205 MEDIUM
SonicOS < 6.5.5.2-28n - Authenticated Path Traversal
Apr 29, 2026
CVSS 6.8
EPSS 0.00
CVE-2026-0204 HIGH
SonicWall SonicOS <=6.5.5.1-6n - Auth Bypass
Apr 29, 2026
CVSS 8.0
EPSS 0.00
CVE-2026-4116 HIGH
SonicWall SMA1000 <12.4.3-03245 - Auth Bypass
Apr 09, 2026
CVSS 7.2
EPSS 0.00
CVE-2026-4114 MEDIUM
SonicWall SMA1000 <12.4.3-03245 - Auth Bypass
Apr 09, 2026
CVSS 6.6
EPSS 0.00
CVE-2026-4113 HIGH
SonicWall SMA1000 <12.4.3-03245 - Info Disclosure
Apr 09, 2026
CVSS 7.2
EPSS 0.00
CVE-2026-4112 HIGH
SonicWall SMA1000 < 12.4.3-03245 (platform-hotfix) and < 12.5.0-02283 (platform-hotfix) - Authenticated SQL Injection
Apr 09, 2026
CVSS 7.2
EPSS 0.00
CVE-2026-3470 LOW
SonicWall Email Security <=10.0.34.8215 - Data Corruption
Mar 31, 2026
CVSS 3.8
EPSS 0.00
CVE-2026-3469 LOW
SonicWall Email Security < 10.0.35.8405 - Authenticated Denial of Service via Improper Input Validation
Mar 31, 2026
CVSS 2.7
EPSS 0.00
CVE-2026-3468 MEDIUM
SonicWall Email Security < 10.0.35.8405 - Authenticated Stored Cross-Site Scripting
Mar 31, 2026
CVSS 4.8
EPSS 0.00
CVE-2026-3439 MEDIUM
SonicOS < 7.3.2-7010 - Authenticated Stack-based Buffer Overflow in Certificate Handling
Mar 04, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-0402 MEDIUM
SonicOS < 7.3.2-7010 - Authenticated Out-of-bounds Read
Feb 24, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-0401 MEDIUM
SonicOS < 7.3.2-7010 - Authenticated Denial of Service via NULL Pointer Dereference
Feb 24, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-0400 MEDIUM
SonicOS < 7.3.2-7010 - Authenticated Denial of Service via Format String Vulnerability
Feb 24, 2026
CVSS 4.9
EPSS 0.00
CVE-2026-0399 MEDIUM
SonicOS < 7.3.2-7010 - Authenticated Stack-based Buffer Overflow via Management API Endpoint
Feb 24, 2026
CVSS 4.9
EPSS 0.00
CVE-2025-40602 MEDIUM KEV
SonicWall SMA6200/SMA6210/SMA7200/SMA7210/SMA8200v < 12.4.3-03245 Local Privilege Escalation
Dec 18, 2025
CVSS 6.6
EPSS 0.00
CVE-2025-40605 MEDIUM
SonicWall Email Security Appliance Firmware < 10.0.33.8195 - Path Traversal via Directory Traversal Sequences
Nov 20, 2025
CVSS 5.3
EPSS 0.00
CVE-2025-40604 CRITICAL
SonicWall Email Security Appliance Firmware < 10.0.33.8195 - Download of Code Without Integrity Check
Nov 20, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-40601 HIGH
SonicOS 7.1.1-7040 to <7.3.1-7013 - Unauthenticated Denial of Service via SSLVPN Stack-based Buffer Overflow
Nov 20, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40603 MEDIUM
SonicWall SMA100 Series < 10.2.2.3 - Authenticated Sensitive Information Exposure in Log Files
Oct 31, 2025
CVSS 4.5
EPSS 0.00
CVE-2025-40600 CRITICAL
SonicOS 7.1.1-7040 to <7.3.0-7012 - Unauthenticated Denial of Service via Format String
Jul 29, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-40598 MEDIUM
SonicWall SMA 500v, SMA 210, SMA 410 < 10.2.2.1-90sv - Unauthenticated Reflected Cross-Site Scripting
Jul 23, 2025
CVSS 6.1
EPSS 0.00
CVE-2025-40597 HIGH
SonicWall SMA 500v, SMA 210, SMA 410 Firmware < 10.2.2.1-90sv - Unauthenticated Heap-based Buffer Overflow
Jul 23, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-40596 HIGH
SonicWall SMA 500v/210/410 Firmware < 10.2.2.1-90sv - Unauthenticated Stack-based Buffer Overflow
Jul 23, 2025
CVSS 7.3
EPSS 0.01
CVE-2025-40599 CRITICAL
SonicWall SMA 210/410/500v Firmware < 10.2.2.1-90sv - Authenticated Arbitrary File Upload
Jul 23, 2025
CVSS 9.1
EPSS 0.01