Local Privilege Escalation Vulnerability in SonicWall NetExtender
CVE-2025-23009

7.2HIGH

Key Information:

Vendor

Sonicwall

Vendor
CVE Published:
10 April 2025

What is CVE-2025-23009?

A local privilege escalation vulnerability within the SonicWall NetExtender Windows client could be exploited by an attacker to perform arbitrary file deletions. This can lead to unauthorized access or manipulation of the system, making it critical for users to mitigate risks by applying the latest patches and following best security practices.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

NetExtender Windows 10.3.1 and earlier versions

References

CVSS V3.1

Score:
7.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.