Vulnerability Details CVE-2023-44217
A local privilege escalation vulnerability in SonicWall Net Extender MSI client for Windows 10.2.336 and earlier versions allows a local low-privileged user to gain system privileges through running repair functionality.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 19.8%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2023-44217
-
cpe:2.3:a:sonicwall:netextender:-
-
cpe:2.3:a:sonicwall:netextender:10.2.300
-
cpe:2.3:a:sonicwall:netextender:10.2.322
-
cpe:2.3:a:sonicwall:netextender:10.2.336
-
cpe:2.3:a:sonicwall:netextender:7.5
-
cpe:2.3:a:sonicwall:netextender:7.5.226
-
cpe:2.3:a:sonicwall:netextender:7.5.227
-
cpe:2.3:a:sonicwall:netextender:8.0
-
cpe:2.3:a:sonicwall:netextender:8.0.236
-
cpe:2.3:a:sonicwall:netextender:8.0.238
-
cpe:2.3:a:sonicwall:netextender:9.0.815