CVE-2025-40605
- EPSS 0.04%
- Veröffentlicht 20.11.2025 12:19:17
- Zuletzt bearbeitet 21.11.2025 15:13:13
A Path Traversal vulnerability has been identified in the Email Security appliance allows an attacker to manipulate file system paths by injecting crafted directory-traversal sequences (such as ../) and may access files and directories outside the in...
CVE-2025-40604
- EPSS 0.02%
- Veröffentlicht 20.11.2025 12:17:14
- Zuletzt bearbeitet 21.11.2025 15:13:59
Download of Code Without Integrity Check Vulnerability in the SonicWall Email Security appliance loads root filesystem images without verifying signatures, allowing attackers with VMDK or datastore access to modify system files and gain persistent ar...
CVE-2019-7488
- EPSS 0.5%
- Veröffentlicht 23.12.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:48:16
Weak default password cause vulnerability in SonicWall Email Security appliance which leads to attacker gain access to appliance database. This vulnerability affected Email Security Appliance version 10.0.2 and earlier.
CVE-2019-7489
- EPSS 21.07%
- Veröffentlicht 23.12.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:48:16
A vulnerability in SonicWall Email Security appliance allow an unauthenticated user to perform remote code execution. This vulnerability affected Email Security Appliance version 10.0.2 and earlier.
CVE-2014-2879
- EPSS 10.57%
- Veröffentlicht 17.04.2014 14:55:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple cross-site scripting (XSS) vulnerabilities in Dell SonicWALL Email Security 7.4.5 and earlier allow remote authenticated administrators to inject arbitrary web script or HTML via (1) the uploadPatch parameter to the System/Advanced page (set...