Known vulnerabilities in SonicWall Secure Remote Access (SRA)
Vendor:
SonicWall
Software:
SonicWall Secure Remote Access (SRA)
Software CPE:
cpe:2.3:h:sonicwall:sra:*:*:*:*:*:*:*:*
Website:
https://www.sonicwall.com/
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU62295 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2022-22279 |
CWE-22 | Medium | - | 13.04.2022 |
SB2022041324 SB2022041325 |
||
| #VU62294 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2021-20028 |
CWE-89 | High | - | 13.04.2022 |
SB2021080411 SB2021080412 |
||
| #VU61610 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-22273 |
CWE-78 | Medium | - | 24.03.2022 |
SB2022032427 |
||
| #VU54857 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
CWE-89 | High | 9.0.0.10-28sv | 14.07.2021 |
SB2021071410 |