SonicWall TZ 300
cpe:2.3:h:sonicwall:tz_300:*:*:*:*:*:*:*, +1 more
- <= 6.5.4.15-117n
A post-authentication format string vulnerability has been identified in the management interface of SonicWall SonicOS. This vulnerability allows remote attackers to cause a crash of the firewall and potentially execute arbitrary code. It affects multiple generations of SonicWall firewalls and certain versions of the SonicWall NSv product.
Exploitation of this vulnerability can lead to a crash of the affected firewall, with a potential for unauthorized code execution.
Users are advised to upgrade to SonicWall SonicOS versions 6.5.5.1-6n, 7.0.1-5165 and higher, 7.1.3-7015 and higher, or 8.0.0-8037 and higher, depending on their specific firewall model.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.