news.mlab.sh
Back to the feed
vulnerability

Multiples vulnérabilités dans Sonicwall Network Security Manager (04 septembre 2026)

CriticalCVSS 9.1
Summary

SonicWall Network Security Manager has multiple vulnerabilities that could allow attackers to execute arbitrary code, escalate privileges, and bypass security policies. These flaws are present in older versions of the software, requiring immediate patching to prevent exploitation. The vulnerabilities have been identified by CERT-FR and are linked to several CVE identifiers.

SonicWall Network Security Manager is experiencing a security issue due to multiple vulnerabilities. These flaws could be exploited to gain unauthorized access and control over affected systems. CERT-FR has reported these issues, highlighting the potential for attackers to execute arbitrary code remotely and elevate their privileges.

Systems vulnerable include Network Security Manager On-Prem running versions prior to 4.3.1-R4 on VMware, Hyper-V, Azure, and KVM. The vulnerabilities are detailed in bulletin SNWLID-2026-0015, available at https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0015.

Specific CVE identifiers associated with these vulnerabilities are CVE-2026-78327, CVE-2026-78328, and CVE-2026-81939. Users should immediately refer to the SonicWall security bulletin for detailed information and available patches.

Read the full article at CERT-FR