ZeroHour

CVE-2022-22278

CVSS 3.1
7.5 high
EPSS
<1%p59
Published
()
Modified
Description

A vulnerability in SonicOS CFS (Content filtering service) returns a large 403 forbidden HTTP response message to the source address when users try to access prohibited resource this allows an attacker to cause HTTP Denial of Service (DoS) attack

Vendors
sonicwall
Products
tz300p firmware, tz300w firmware, tz350 firmware, tz350w firmware, nssp 10700 firmware, nssp 11700 firmware, nssp 12400 firmware, nssp 12800 firmware, nssp 13700 firmware, nssp 15700 firmware, tz370 firmware, tz370w firmware
Weakness
CWE-770
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.