CVE-2023-6340: SonicWall Capture Client
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
SonicWall Capture Client version 3.7.10, NetExtender client version 10.2.337 and earlier versions are installed with sfpmonitor.sys driver. The driver has been found to be vulnerable to Denial-of-Service (DoS) caused by Stack-based Buffer Overflow vulnerability.
Affected products
- SonicWall Capture Client: up to and including 3.7.10
- SonicWall Netextender: up to and including 10.2.337
Published 2024-01-18. Last modified 2026-06-17.