Privilege Escalation Vulnerability in Dell SonicWall NetExtender
CVE-2015-4173

Currently unrated

Key Information:

Vendor
Sonicwall
Vendor
CVE Published:
26 August 2015

Summary

The unquoted Windows search path vulnerability in Dell SonicWall NetExtender allows local users to execute a Trojan horse program placed within the %SYSTEMDRIVE% folder, resulting in elevated privileges. This issue affects versions of NetExtender and the SRA firmware prior to specified updates, exposing users to potential unauthorized access to system capabilities without proper authentication.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.