CVE-2023-44220: SonicWall Netextender

High severity, CVSS 7.3. EPSS: 0.3% chance of exploitation in the next 30 days.

SonicWall NetExtender Windows (32-bit and 64-bit) client 10.2.336 and earlier versions have a DLL Search Order Hijacking vulnerability in the start-up DLL component. Successful exploitation via a local attacker could result in command execution in the target system.

Affected products

  • SonicWall Netextender: up to and including 10.2.336

Published 2023-10-27. Last modified 2026-06-17.