Known vulnerabilities in SMA 100 9.0.0.9-26sv
Vendor:
SonicWall
Software:
SMA 100
Version:
9.0.0.9-26sv
Software CPE:
cpe:2.3:h:sonicwall:sma_100:*:*:*:*:*:*:*:*
Website:
https://www.sonicwall.com/
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
2
Highest CVSSv4 Score:
8.7
Vulnerabilities by Severity
10.2.2.3
10.2.2.2-92sv
10.2.2.1-90sv
10.2.1.15-81sv
10.2.1.12
10.2.1.9
10.2.1.8
10.2.1.7
10.2.1.14-75sv
10.2.1.13-72sv
10.2.1.11-65sv
10.2.1.10-62sv
10.2.1.6-37sv
10.2.1.5-34sv
10.2.0.10-46sv
10.2.1.4-31sv
9.0.0.9-26sv
10.2.0.9-41sv
10.2.1.3-27sv
10.2.1.2-24sv
10.2.1.1-19sv
10.2.0.8-37sv
9.0.0.11-31sv
9.0.0.10-28sv
10.2.0.7-34sv
10.2.1.0-17sv
10.2.0.6-31sv
10.2.0.5-d-29sv
10.2.0.3-24sv
10.2.0.2-20sv
-
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU62295 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2022-22279 |
CWE-22 | Medium | 9.0.0.10-28sv | 13.04.2022 |
SB2022041324 SB2022041325 |
||
| #VU62294 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2021-20028 |
CWE-89 | High | 9.0.0.10-28sv, 10.2.0.7-34sv | 13.04.2022 |
SB2021080411 SB2021080412 |
||
| #VU61610 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-22273 |
CWE-78 | Medium | 9.0.0.10-28sv | 24.03.2022 |
SB2022032427 |