Home

Description

Multiple post-authentication stack-based buffer overflow vulnerabilities in the SonicOS management interface due to improper bounds checking in a API endpoint.

PUBLISHED Reserved 2025-12-02 | Published 2026-02-24 | Updated 2026-02-24 | Assigner sonicwall

Problem types

CWE-121 Stack-based Buffer Overflow

Product status

Default status
unknown

7.0.1-5169 and older versions
affected

7.3.1-7013 and older versions
affected

8.1.0-8017 and older versions
affected

Credits

Vang3lis, Heuzoo and Moyushui of VARAS@IIE finder

References

psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0001 vendor-advisory

cve.org (CVE-2026-0399)

nvd.nist.gov (CVE-2026-0399)

Download JSON