CVE-2022-22278

A vulnerability in SonicOS CFS (Content filtering service) returns a large 403 forbidden HTTP response message to the source address when users try to access prohibited resource this allows an attacker to cause HTTP Denial of Service (DoS) attack
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
sonicwallCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 49%
VendorProductVersion
sonicwalltz300p_firmware
𝑥
< 7.0.1
sonicwalltz300w_firmware
𝑥
< 7.0.1
sonicwalltz350_firmware
𝑥
< 7.0.1
sonicwalltz350w_firmware
𝑥
< 7.0.1
sonicwallnssp_10700_firmware
𝑥
< 7.0.1.0
sonicwallnssp_11700_firmware
𝑥
< 7.0.1.0
sonicwallnssp_12400_firmware
𝑥
< 7.0.1.0
sonicwallnssp_12800_firmware
𝑥
< 7.0.1.0
sonicwallnssp_13700_firmware
𝑥
< 7.0.1.0
sonicwallnssp_15700_firmware
𝑥
< 7.0.1.0
sonicwalltz370_firmware
𝑥
< 7.0.1
sonicwalltz370w_firmware
𝑥
< 7.0.1
sonicwalltz400_firmware
𝑥
< 7.0.1
sonicwallnsv_10_firmware
𝑥
< 7.0.1.0
sonicwallnsv_100_firmware
𝑥
< 7.0.1.0
sonicwallnsv_1600_firmware
𝑥
< 7.0.1.0
sonicwallnsv_200_firmware
𝑥
< 7.0.1.0
sonicwallnsv_25_firmware
𝑥
< 7.0.1.0
sonicwallnsv_270_firmware
𝑥
< 7.0.1.0
sonicwallnsv_300_firmware
𝑥
< 7.0.1.0
sonicwallnsv_400_firmware
𝑥
< 7.0.1.0
sonicwallnsv_470_firmware
𝑥
< 7.0.1.0
sonicwallnsv_50_firmware
𝑥
< 7.0.1.0
sonicwallnsv_800_firmware
𝑥
< 7.0.1.0
sonicwallnsv_870_firmware
𝑥
< 7.0.1.0
sonicwalltz400w_firmware
𝑥
< 7.0.1
sonicwalltz470_firmware
𝑥
< 7.0.1
sonicwalltz470w_firmware
𝑥
< 7.0.1
sonicwalltz500_firmware
𝑥
< 7.0.1
sonicwallnsa_2650_firmware
𝑥
< 7.0.1
sonicwallnsa_2700_firmware
𝑥
< 7.0.1
sonicwallnsa_3650_firmware
𝑥
< 7.0.1
sonicwallnsa_3700_firmware
𝑥
< 7.0.1
sonicwallnsa_4650_firmware
𝑥
< 7.0.1
sonicwallnsa_4700_firmware
𝑥
< 7.0.1
sonicwallnsa_5650_firmware
𝑥
< 7.0.1
sonicwallnsa_5700_firmware
𝑥
< 7.0.1
sonicwallnsa_6650_firmware
𝑥
< 7.0.1
sonicwallnsa_6700_firmware
𝑥
< 7.0.1
sonicwallnsa_9250_firmware
𝑥
< 7.0.1
sonicwallnsa_9450_firmware
𝑥
< 7.0.1
sonicwallnsa_9650_firmware
𝑥
< 7.0.1
sonicwalltz500w_firmware
𝑥
< 7.0.1
sonicwalltz570_firmware
𝑥
< 7.0.1
sonicwalltz570p_firmware
𝑥
< 7.0.1
sonicwalltz570w_firmware
𝑥
< 7.0.1
sonicwalltz600_firmware
𝑥
< 7.0.1
sonicwalltz600p_firmware
𝑥
< 7.0.1
sonicwalltz670_firmware
𝑥
< 7.0.1
𝑥
= Vulnerable software versions