CVE-2023-44219: SonicWall Directory Services Connector

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A local privilege escalation vulnerability in SonicWall Directory Services Connector Windows MSI client 4.1.21 and earlier versions allows a local low-privileged user to gain system privileges through running the recovery feature.

Affected products

  • SonicWall Directory Services Connector: before 4.1.22 (fixed in 4.1.22)

Published 2023-10-27. Last modified 2026-06-17.