CVE-2019-7478: SonicWall Global Management System

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

A vulnerability in GMS allow unauthenticated user to SQL injection in Webservice module. This vulnerability affected GMS versions GMS 8.4, 8.5, 8.6, 8.7, 9.0 and 9.1.

Affected products

  • SonicWall Global Management System: version 8.4 only; version 8.5 only; version 8.6 only; version 8.7 only; version 9.0 only; version 9.1 only

Published 2019-12-31. Last modified 2026-06-17.