ZeroHour

CVE-2025-32820

CVSS 3.1
8.8 high
EPSS
3%p86
Published
()
Modified
Description

A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path traversal sequence to make any directory on the SMA appliance writable.

Vendors
sonicwall
Products
sma 100 firmware, sma 200 firmware, sma 210 firmware, sma 400 firmware, sma 410 firmware, sma 500v firmware
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news