CVE-2019-7484: SonicWall SMA 100 Firmware

Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.

Authenticated SQL Injection in SonicWall SMA100 allow user to gain read-only access to unauthorized resources using viewcacert CGI script. This vulnerability impacted SMA100 version 9.0.0.3 and earlier.

Affected products

  • SonicWall SMA 100 Firmware: up to and including 9.0.0.3

Published 2019-12-19. Last modified 2026-06-17.