HomeDefault status
unknown
7.0.1-5169 and older versions
affected
7.3.1-7013 and older versions
affected
8.1.0-8017 and older versions
affected
Description
A post-authentication Format String vulnerability in SonicOS allows a remote attacker to crash a firewall.
Problem types
CWE-134 Use of Externally-Controlled Format String
Product status
7.0.1-5169 and older versions
7.3.1-7013 and older versions
8.1.0-8017 and older versions
Credits
Vang3lis and Heuzoo of VARAS@IIE
References
psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0001