ZeroHour

CVE-2022-2323

CVSS 3.1
8.8 high
EPSS
6%p93
Published
()
Modified
Description

Improper neutralization of special elements used in a user input allows an authenticated malicious user to perform remote code execution in the host system. This vulnerability impacts SonicWall Switch 1.1.1.0-2s and earlier versions

Vendors
sonicwall
Products
sws12-10fpoe firmware, sws12-8 firmware, sws12-8poe firmware, sws14-24 firmware, sws14-24fpoe firmware, sws14-48 firmware, sws14-48fpoe firmware
Weakness
CWE-77
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.