A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path traversal sequence to make any directory on the SMA appliance writable.
Metrics
Affected Vendors & Products
References
History
Mon, 19 May 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Sonicwall
Sonicwall sma 100 Sonicwall sma 100 Firmware Sonicwall sma 200 Sonicwall sma 200 Firmware Sonicwall sma 210 Sonicwall sma 210 Firmware Sonicwall sma 400 Sonicwall sma 400 Firmware Sonicwall sma 410 Sonicwall sma 410 Firmware Sonicwall sma 500v Sonicwall sma 500v Firmware |
|
CPEs | cpe:2.3:h:sonicwall:sma_100:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sma_200:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sma_210:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sma_400:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sma_410:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sma_500v:-:*:*:*:*:*:*:* cpe:2.3:o:sonicwall:sma_100_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:sonicwall:sma_200_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:sonicwall:sma_210_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:sonicwall:sma_400_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:sonicwall:sma_410_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:sonicwall:sma_500v_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Sonicwall
Sonicwall sma 100 Sonicwall sma 100 Firmware Sonicwall sma 200 Sonicwall sma 200 Firmware Sonicwall sma 210 Sonicwall sma 210 Firmware Sonicwall sma 400 Sonicwall sma 400 Firmware Sonicwall sma 410 Sonicwall sma 410 Firmware Sonicwall sma 500v Sonicwall sma 500v Firmware |
Wed, 07 May 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Wed, 07 May 2025 17:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path traversal sequence to make any directory on the SMA appliance writable. | |
Weaknesses | CWE-22 | |
References |
|

Status: PUBLISHED
Assigner: sonicwall
Published: 2025-05-07T17:20:10.699Z
Updated: 2025-05-07T18:53:33.086Z
Reserved: 2025-04-11T08:50:31.683Z
Link: CVE-2025-32820

Updated: 2025-05-07T17:36:09.664Z

Status : Analyzed
Published: 2025-05-07T18:15:42.737
Modified: 2025-05-19T15:12:48.930
Link: CVE-2025-32820

No data.