High · published April 9, 2021
CVSS calls it high at 7.2. It is confirmed in active exploitation. It sits in the 96.8th percentile for exploit probability.
🚨 Just one logged-in user can turn a SonicWall Email Security instance into their personal upload station! 🔥 Think of it like a hotel that lets guests not only check in but also wander around to drop off any kind of package they want in the lobby. If no one is checking what’s being left behind, it could lead to all sorts of trouble! An attacker with a valid account could easily upload malicious files, potentially leading to data breaches or further exploitation within the network. This could allow them to plant backdoors or exfiltrate sensitive information, turning the situation absolutely devastating!
Think of it like a hotel that lets guests not only check in but also wander around to drop off any kind of package they want in the lobby. If no one is checking what’s being left behind, it could lead to all sorts of trouble! This vulnerability in SonicWall Email Security version 10.0.9.x allows authenticated users to upload arbitrary files, bypassing necessary security controls that should prevent such actions.
An attacker with a valid account could easily upload malicious files, potentially leading to data breaches or further exploitation within the network. This could allow them to plant backdoors or exfiltrate sensitive information, turning the situation absolutely devastating! Immediately upgrade to the latest version of SonicWall Email Security to patch this vulnerability. Additionally, review user access levels and tighten permissions to ensure only necessary accounts have upload capabilities. Last but not least, regularly audit your file upload processes! You’ve got this! Stay proactive and secure your systems to keep those pesky attackers at bay! 🛡️
| Product | Versions | Fixed in |
|---|---|---|
| sonicwall/email_security | < 10.0.9.6103 | 10.0.9.6103 |
| sonicwall/email_security_appliance_9000_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_3300_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_4300_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_8300_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_5000_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_7000_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_5050_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_7050_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_virtual_appliance | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/hosted_email_security | < 10.0.9.6103 | 10.0.9.6103 |