Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

SonicWall — Vulnerabilities & Security Advisories 187

Browse all 187 CVE security advisories affecting SonicWall. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SonicWall provides network security appliances and cloud-based services primarily focused on firewall management, intrusion prevention, and email security for enterprise environments. Historically, its firmware has been susceptible to a wide array of critical vulnerabilities, including remote code execution, cross-site scripting, and privilege escalation flaws. These issues often stem from improper input validation, insecure default configurations, or insufficient access controls within the management interfaces. A significant notable incident involved the widespread exploitation of the "SonicWall Global Management System" vulnerability, which allowed attackers to gain unauthorized administrative access to thousands of devices globally. The high volume of recorded CVEs reflects ongoing challenges in securing complex network infrastructure software. While the company actively releases patches, the frequency of disclosed flaws highlights persistent risks associated with its hardware and software ecosystem, necessitating rigorous update protocols for administrators to mitigate potential breaches and data exfiltration attempts.

CVE IDTitleCVSSSeverityPublished
CVE-2021-20016 Sonicwall SMA100 SQL注入漏洞 — SonicWall SMA100CWE-89 9.8 -2021-02-03
CVE-2020-5147 Sonicwall SonicWall NetExtender Windows client 代码问题漏洞 — SonicWall NetExtenderCWE-428 7.8 -2021-01-09
CVE-2020-5146 Sonicwall SMA100 操作系统命令注入漏洞 — SMA100CWE-78 7.2 -2021-01-09
CVE-2020-5144 SonicWall Global VPN client 代码问题漏洞 — SonicWall Global VPN ClientCWE-426 8.4 -2020-10-28
CVE-2020-5145 SonicWall Global VPN client 代码问题漏洞 — SonicWall Global VPN ClientCWE-427 7.8 -2020-10-28
CVE-2020-5143 SonicWall SonicOS SSLVPN NACagent 安全漏洞 — SonicOSCWE-203 5.3 -2020-10-12
CVE-2020-5141 SonicWall SonicOS 安全漏洞 — SonicOSCWE-799 6.5 -2020-10-12
CVE-2020-5142 SonicWall SonicOS SSLVPN NACagent 跨站脚本漏洞 — SonicOSCWE-79 6.1 -2020-10-12
CVE-2020-5138 SonicWall SonicOS 缓冲区错误漏洞 — SonicOSCWE-122 7.5 -2020-10-12
CVE-2020-5139 SonicWall SonicOS SSLVPN NACagent 安全漏洞 — SonicOSCWE-763 7.5 -2020-10-12
CVE-2020-5140 SonicWall SonicOS 缓冲区错误漏洞 — SonicOSCWE-125 7.5 -2020-10-12
CVE-2020-5136 SonicWall SonicOS 缓冲区错误漏洞 — SonicOSCWE-120 6.5 -2020-10-12
CVE-2020-5137 SonicWall SonicOS 缓冲区错误漏洞 — SonicOSCWE-120 7.5 -2020-10-12
CVE-2020-5134 SonicWall SonicOS 缓冲区错误漏洞 — SonicOSCWE-125 6.5 -2020-10-12
CVE-2020-5135 SonicWall SonicOS 缓冲区错误漏洞 — SonicOSCWE-120 9.8 -2020-10-12
CVE-2020-5133 SonicWall SonicOS 安全漏洞 — SonicOSCWE-120 7.5 -2020-10-12
CVE-2020-5132 SonicWall SSL-VPN,SonicWall firewall SSL-VPN 信息泄露漏洞 — SMA100CWE-200--2020-09-30
CVE-2020-5131 SonicWall NetExtender Windows client 输入验证错误漏洞 — SonicWall NetExtenderCWE-20 7.8 -2020-07-17
CVE-2020-5130 SonicWall SonicOS 输入验证错误漏洞 — SonicOSCWE-20 7.5 -2020-07-17
CVE-2020-5129 SonicWall SMA100 HTTP Extraweb server 环境问题漏洞 — SMA1000CWE-248 7.5 -2020-03-26
CVE-2019-7479 SonicWall SonicOS 授权问题漏洞 — SonicOSCWE-285 7.2 -2019-12-31
CVE-2019-7478 SonicWall Global Management System Webservice模块SQL注入漏洞 — GMSCWE-89 9.8 -2019-12-30
CVE-2019-7488 SonicWall Email Security Appliance 信任管理问题漏洞 — Email Security ApplianceCWE-255 9.8 -2019-12-23
CVE-2019-7489 SonicWall Email Security Appliance 授权问题漏洞 — Email Security ApplianceCWE-285 9.8 -2019-12-23
CVE-2019-7487 SonicWall SonicOS SSLVPN NACagent 代码问题漏洞 — SonicOSCWE-428 8.4 -2019-12-19
CVE-2019-7484 SonicWall SMA100 SQL注入漏洞 — SMA100CWE-89 6.5 -2019-12-19
CVE-2019-7485 SonicWall SMA100 缓冲区错误漏洞 — SMA100CWE-120 8.8 -2019-12-19
CVE-2019-7486 SonicWall SMA100 代码注入漏洞 — SMA100CWE-94 8.8 -2019-12-19
CVE-2019-7482 SonicWall SMA100 缓冲区错误漏洞 — SMA100CWE-121 9.8 -2019-12-19
CVE-2019-7483 SonicWall SMA100 路径遍历漏洞 — SMA100CWE-22 7.5 -2019-12-19

This page lists every published CVE security advisory associated with SonicWall. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.