Vulnerability Details CVE-2022-2323
Improper neutralization of special elements used in a user input allows an authenticated malicious user to perform remote code execution in the host system. This vulnerability impacts SonicWall Switch 1.1.1.0-2s and earlier versions
Exploit prediction scoring system (EPSS) score
EPSS Score 0.032
EPSS Ranking 86.3%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2022-2323
-
cpe:2.3:h:sonicwall:sws12-10fpoe:-
-
cpe:2.3:h:sonicwall:sws12-8:-
-
cpe:2.3:h:sonicwall:sws12-8poe:-
-
cpe:2.3:h:sonicwall:sws14-24:-
-
cpe:2.3:h:sonicwall:sws14-24fpoe:-
-
cpe:2.3:h:sonicwall:sws14-48:-
-
cpe:2.3:h:sonicwall:sws14-48fpoe:-
-
cpe:2.3:o:sonicwall:sws12-10fpoe_firmware:*
-
cpe:2.3:o:sonicwall:sws12-8_firmware:*
-
cpe:2.3:o:sonicwall:sws12-8poe_firmware:*
-
cpe:2.3:o:sonicwall:sws14-24_firmware:*
-
cpe:2.3:o:sonicwall:sws14-24fpoe_firmware:*
-
cpe:2.3:o:sonicwall:sws14-48_firmware:*
-
cpe:2.3:o:sonicwall:sws14-48fpoe_firmware:*