CVE-2025-23007: SonicWall Netextender

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

A vulnerability in the NetExtender Windows client log export function allows unauthorized access to sensitive Windows system files, potentially leading to privilege escalation.

Affected products

Published 2025-01-30. Last modified 2026-06-17.