Vulnerability index

Browse CVEs

16 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 10.0 CVE-2026-15409 KEVEPSS 74% A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attack… Sma6210 Firmware Mitigation only Fix from $2,3002026-07-14 HIGH 7.2 CVE-2026-15410 KEVEPSS 76% Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management C… Sma6210 Firmware Mitigation only Fix from $1,9502026-07-14 MEDIUM 6.6 CVE-2025-40602 KEV A local privilege escalation vulnerability due to insufficient authorization in the SonicWall SMA1000 appliance management console (AMC). Sma6200 Firmware 12.4.3-03245 / 12.5.0-02283+ Fix from $1,6002025-12-18 CRITICAL 9.8 CVE-2025-23006 KEVEPSS 23% Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central … Sma8200v 12.4.3-02854+ Fix from $2,3002025-01-23 CRITICAL 9.8 CVE-2024-53704 KEVEPSS 95% An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication. Sonicos after 7.1.1-7058 Fix from $2,3002025-01-09 CRITICAL 9.8 CVE-2024-40766 KEVEPSS 18% An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource… Sonicos 5.9.2.14-13o / 6.5.2.8-2n+ Fix from $2,3002024-08-23 HIGH 7.2 CVE-2023-44221 KEVEPSS 75% Improper neutralization of special elements in the SMA100 SSL-VPN management interface allows a remote authenticated attacker with administrative pri… Sma 200 Firmware after 10.2.1.9-57sv Fix from $1,9502023-12-05 CRITICAL 9.8 CVE-2021-20038 KEVEPSS 100% A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables allows a remote unauthenticated atta… Sma 200 Firmware Mitigation only Fix from $2,3002021-12-08 MEDIUM 6.5 CVE-2021-20035 KEV Improper neutralization of special elements in the SMA100 management interface allows a remote authenticated attacker to inject arbitrary commands as… Sma 200 Firmware 9.0.0.11-31sv / 10.2.0.8-37sv+ Fix from $1,6002021-09-27 CRITICAL 9.8 CVE-2021-20028 KEVEPSS 30% Improper neutralization of a SQL Command leading to SQL Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products, specifical… Sma 210 Firmware 9.0.0.10-28sv+ Fix from $2,3002021-08-04 CRITICAL 9.8 CVE-2021-20021 KEVEPSS 83% A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP req… Email Security 10.0.9.6103 / 10.0.9.6105+ Fix from $2,3002021-04-09 HIGH 7.2 CVE-2021-20022 KEVEPSS 17% SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to upload an arbitrary file to the remot… Email Security 10.0.9.6103 / 10.0.9.6105+ Fix from $1,9502021-04-09 CRITICAL 9.8 CVE-2021-20016 KEVEPSS 37% A SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access username… Sma 100 Firmware 10.2.0.5-d-29sv+ Fix from $2,3002021-02-04 CRITICAL 9.8 CVE-2020-5135 KEVEPSS 25% A buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service (DoS) and potentially execute arbitrary code by sendin… Sonicos after 6.5.4.7 Fix from $2,3002020-10-12 HIGH 7.5 CVE-2019-7483 KEV In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user to test for the presence of a … Sma 100 Firmware 9.0.0.4+ Fix from $1,9502019-12-19 HIGH 7.5 CVE-2019-7481 KEVEPSS 100% Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only access to unauthorized resources. This vulnerablity impacted SMA100 ve… Sma 100 Firmware 9.0.0.4+ Fix from $1,9502019-12-17