A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path traversal sequence to make any directory on the SMA appliance writable.
Metrics
Affected Vendors & Products
References
History
Wed, 07 May 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Wed, 07 May 2025 17:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path traversal sequence to make any directory on the SMA appliance writable. | |
Weaknesses | CWE-22 | |
References |
|

Status: PUBLISHED
Assigner: sonicwall
Published: 2025-05-07T17:20:10.699Z
Updated: 2025-05-07T18:53:33.086Z
Reserved: 2025-04-11T08:50:31.683Z
Link: CVE-2025-32820

Updated: 2025-05-07T17:36:09.664Z

Status : Awaiting Analysis
Published: 2025-05-07T18:15:42.737
Modified: 2025-05-08T14:39:09.683
Link: CVE-2025-32820

No data.