CVE-2019-7484

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
19/12/2019
Last modified:
31/12/2019

Description

Authenticated SQL Injection in SonicWall SMA100 allow user to gain read-only access to unauthorized resources using viewcacert CGI script. This vulnerability impacted SMA100 version 9.0.0.3 and earlier.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:sonicwall:sma_100_firmware:*:*:*:*:*:*:*:* 9.0.0.3 (including)
cpe:2.3:h:sonicwall:sma_100:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools