CVE-2025-32820
07.05.2025, 18:15
A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path traversal sequence to make any directory on the SMA appliance writable.
Vendor | Product | Version |
---|---|---|
sonicwall | sma_100_firmware | 𝑥 < 10.2.1.15-81sv |
sonicwall | sma_200_firmware | 𝑥 < 10.2.1.15-81sv |
sonicwall | sma_210_firmware | 𝑥 < 10.2.1.15-81sv |
sonicwall | sma_400_firmware | 𝑥 < 10.2.1.15-81sv |
sonicwall | sma_410_firmware | 𝑥 < 10.2.1.15-81sv |
sonicwall | sma_500v_firmware | 𝑥 < 10.2.1.15-81sv |
𝑥
= Vulnerable software versions