CVE-2023-44217: SonicWall Netextender

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A local privilege escalation vulnerability in SonicWall Net Extender MSI client for Windows 10.2.336 and earlier versions allows a local low-privileged user to gain system privileges through running repair functionality.

Affected products

  • SonicWall Netextender: up to and including 10.2.336

Published 2023-10-03. Last modified 2026-06-17.