Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in SonicWall GMS, SonicWall Analytics enables an authenticated attacker to execute arbitrary code with root privileges. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 23 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: sonicwall
Published:
Updated: 2025-04-23T16:20:27.112Z
Reserved: 2023-05-25T22:45:46.851Z
Link: CVE-2023-34127
Updated: 2024-08-02T16:01:53.890Z
Status : Modified
Published: 2023-07-13T01:15:08.893
Modified: 2025-04-23T17:16:33.140
Link: CVE-2023-34127
No data.
OpenCVE Enrichment
No data.