CVE-2015-4173: SonicWall Netextender
Medium severity, CVSS 6.9. EPSS: 2.1% chance of exploitation in the next 30 days.
Unquoted Windows search path vulnerability in the autorun value in Dell SonicWall NetExtender before 7.5.227 and 8.0.x before 8.0.238, as used in the SRA firmware before 7.5.1.2-40sv and 8.x before 8.0.0.3-23sv, allows local users to gain privileges via a Trojan horse program in the %SYSTEMDRIVE% folder.
Affected products
- SonicWall Netextender: before 7.5.227 (fixed in 7.5.227); from 8.0, before 8.0.238 (fixed in 8.0.238)
Published 2015-08-26. Last modified 2026-06-17.