CVE-2018-5281: SonicWall SonicOS

Medium severity, CVSS 5.4. EPSS: 2.5% chance of exploitation in the next 30 days.

SonicWall SonicOS on Network Security Appliance (NSA) 2017 Q4 devices has XSS via the CFS Custom Category and Cloud AV DB Exclusion Settings screens.

Affected products

Published 2018-01-08. Last modified 2026-06-17.