Known vulnerabilities in NetExtender for Linux
Vendor:
SonicWall
Software:
NetExtender for Linux
Software CPE:
cpe:2.3:a:sonicwall:netextender_for_linux:*:*:*:*:*:*:*:*
Website:
https://www.sonicwall.com/
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU145834 - Path Traversal: \'\\..\\filename\' CVE-2026-66152 |
CWE-29 | High | 10.3.6-39 | 26.08.2026 |
SB2026082682 |
||
| #VU145835 - Improper Link Resolution Before File Access ('Link Following') CVE-2026-66153 |
CWE-59 | Low | 10.3.6-39 | 26.08.2026 |
SB2026082682 |
||
| #VU49936 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2021-20016 |
CWE-89 | Critical | - | 24.01.2021 |
SB2021012401 |