Vulnerability Details CVE-2023-44218
A flaw within the SonicWall NetExtender Pre-Logon feature enables an unauthorized user to gain access to the host Windows operating system with 'SYSTEM' level privileges, leading to a local privilege escalation (LPE) vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 26.0%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-44218
-
cpe:2.3:a:sonicwall:netextender:-
-
cpe:2.3:a:sonicwall:netextender:10.2.300
-
cpe:2.3:a:sonicwall:netextender:10.2.322
-
cpe:2.3:a:sonicwall:netextender:10.2.336
-
cpe:2.3:a:sonicwall:netextender:7.5
-
cpe:2.3:a:sonicwall:netextender:7.5.226
-
cpe:2.3:a:sonicwall:netextender:7.5.227
-
cpe:2.3:a:sonicwall:netextender:8.0
-
cpe:2.3:a:sonicwall:netextender:8.0.236
-
cpe:2.3:a:sonicwall:netextender:8.0.238
-
cpe:2.3:a:sonicwall:netextender:9.0.815