CVE-2023-34135: SonicWall Analytics
Medium severity, CVSS 6.5. EPSS: 1.6% chance of exploitation in the next 30 days.
Path Traversal vulnerability in SonicWall GMS and Analytics allows a remote authenticated attacker to read arbitrary files from the underlying file system via web service. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.
Affected products
- SonicWall Analytics: up to and including 2.5.0.4-r7
- SonicWall Global Management System: before 9.3.2 (fixed in 9.3.2); version 9.3.2 only
Published 2023-07-13. Last modified 2026-06-17.