Vulnerability identifier: #VU78337
Vulnerability risk: Medium
CVSSv3.1: 6.2 [CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L/E:U/RL:O/RC:C]
CVE-ID:
CWE-ID:
CWE-22
Exploitation vector: Network
Exploit availability: No
Vulnerable software:
SonicWall GMS
Client/Desktop applications /
Other client software
SonicWall Analytics
Server applications /
IDS/IPS systems, Firewalls and proxy servers
Vendor: SonicWall
Description
The vulnerability allows a remote attacker to perform directory traversal attacks.
The vulnerability exists due to input validation error when processing directory traversal sequences. A remote user can traverse the directory and extract arbitrary files using Zip Slip method to any location on the underlying filesystem with root privileges.
Mitigation
Install update from vendor's website.
Vulnerable software versions
SonicWall GMS: 9.3.2-SP1
SonicWall Analytics: 2.5.0.4-R7
External links
http://psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0010
http://www.sonicwall.com/support/knowledge-base/urgent-security-notice-sonicwall-gms-analytics-impacted-by-suite-of-vulnerabilities/230710150218060/
http://www.zerodayinitiative.com/advisories/ZDI-23-1154/
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote authenticated user via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.