VDB
CNVD-2025-01663
CNVD-2025-01663
PUBLISHED
CVSS 4.900000095367432 MEDIUM
SonicWALL SonicOS是美国SonicWALL公司的一套专为SonicWall防火墙设备设计的操作系统。 SonicWALL SonicOS存在安全漏洞,该漏洞源于存在认证后绝对路径遍历漏洞,经过身份验证的远程攻击者可利用该漏洞读取任意文件。
Risk Scores
CVSS v3.1
4.900000095367432
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| SonicWall | SonicOS | 6.5.4.15-117n and older versions, 7.0.1-5161 and older version, 7.1.2-7019 |
Timeline
- Jan 7, 2025 PoC Published
- Jan 7, 2025 PoC Published
- Jan 7, 2025 CVE Published
- Jan 9, 2025 PoC Published
- Jan 9, 2025 PoC Published
- Jan 9, 2025 PoC Published
- Jan 13, 2025 PoC Published
- Jan 17, 2025 PoC Published
References
- https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0004 vendor-advisory