HomeDefault status
unknown
7.1.1-7058 and older versions
affected
7.1.2-7019
affected
Description
A vulnerability in the Gen7 SonicOS Cloud platform NSv, allows a remote authenticated local low-privileged attacker to elevate privileges to `root` and potentially lead to code execution.
Problem types
CWE-269 Improper Privilege Management
Product status
7.1.1-7058 and older versions
7.1.2-7019
Credits
Daan Keuper, Thijs Alkemade and Khaled Nassar of Computest Security through Trend Micro (Zero Day Initiative)
References
psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0003