CVE-2022-22281

7.8HIGH

Key Information

Vendor
Sonicwall
Status
Sonicwall Netextender Windows (32 And 64 Bit) Client
Vendor
CVE Published:
13 May 2022

Summary

A buffer overflow vulnerability in the SonicWall SSL-VPN NetExtender Windows Client (32 and 64 bit) in 10.2.322 and earlier versions, allows an attacker to potentially execute arbitrary code in the host windows operating system.

Affected Version(s)

SonicWall NetExtender Windows (32 and 64 bit) Client = 10.2.322 and earlier versions

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database
.