Sonicwall

Email Security

17 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.2%
  • Veröffentlicht 11.08.2026 20:19:34
  • Zuletzt bearbeitet 12.08.2026 05:19:33

Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email Security appliance allows an authenticated attacker with access to the SonicWall Email Security restricted CLI can inject arbitrary OS commands that execut...

  • EPSS 0.2%
  • Veröffentlicht 11.08.2026 20:18:25
  • Zuletzt bearbeitet 12.08.2026 05:19:33

Improper Control of Generation of Code ('Code Injection') Vulnerability in the SonicWall Email Security appliance allows an authenticated attacker with access to the SonicWall Email Security restricted CLI can inject arbitrary OS commands that execut...

  • EPSS 0.32%
  • Veröffentlicht 31.03.2026 20:19:38
  • Zuletzt bearbeitet 24.07.2026 20:10:00

A vulnerability exists in the SonicWall Email Security appliance due to improper input sanitization that may lead to data corruption, allowing a remote authenticated attacker as admin user could exploit this issue by providing crafted input that corr...

  • EPSS 0.39%
  • Veröffentlicht 31.03.2026 20:18:32
  • Zuletzt bearbeitet 24.07.2026 20:10:00

A denial-of-service (DoS) vulnerability exists due to improper input validation in the SonicWall Email Security appliance, allowing a remote authenticated attacker as admin user to cause the application to become unresponsive.

  • EPSS 0.23%
  • Veröffentlicht 31.03.2026 20:17:11
  • Zuletzt bearbeitet 24.07.2026 20:10:00

A stored Cross-Site Scripting (XSS) vulnerability has been identified in the SonicWall Email Security appliance due to improper neutralization of user-supplied input during web page generation, allowing a remote authenticated attacker as admin user t...

Medienbericht
  • EPSS 0.33%
  • Veröffentlicht 20.11.2025 12:19:17
  • Zuletzt bearbeitet 12.12.2025 15:43:42

A Path Traversal vulnerability has been identified in the Email Security appliance allows an attacker to manipulate file system paths by injecting crafted directory-traversal sequences (such as ../) and may access files and directories outside the in...

Medienbericht
  • EPSS 0.19%
  • Veröffentlicht 20.11.2025 12:17:14
  • Zuletzt bearbeitet 12.12.2025 15:44:04

Download of Code Without Integrity Check Vulnerability in the SonicWall Email Security appliance loads root filesystem images without verifying signatures, allowing attackers with VMDK or datastore access to modify system files and gain persistent ar...

  • EPSS 0.9%
  • Veröffentlicht 14.03.2024 04:15:09
  • Zuletzt bearbeitet 15.04.2026 00:35:42

An improper Limitation of a Pathname to a Restricted Directory (Path Traversal) vulnerability in SonicWall Email Security Appliance could allow a remote attacker with administrative privileges to conduct a directory traversal attack and delete arbitr...

  • EPSS 0.72%
  • Veröffentlicht 14.02.2023 03:15:09
  • Zuletzt bearbeitet 20.03.2025 21:15:16

SonicWall Email Security contains a vulnerability that could permit a remote unauthenticated attacker access to an error page that includes sensitive information about users email addresses.

Warnung
  • EPSS 100%
  • Veröffentlicht 18.12.2021 12:15:07
  • Zuletzt bearbeitet 29.05.2026 13:16:19

Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursion from self-referential lookups. This allows an attacker with control over Thread Context Map data to cause a denial of service wh...