CVE-2025-23007: SonicWall Netextender
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
A vulnerability in the NetExtender Windows client log export function allows unauthorized access to sensitive Windows system files, potentially leading to privilege escalation.
Affected products
- SonicWall Netextender: version 10.3.0 only
Published 2025-01-30. Last modified 2026-06-17.