← Back

CVE-2019-7479

nvd nist
Published: Dec 31, 2019Modified: Jun 17, 2026

JSON object

Loading...
7.2
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.2 / Impact: 5.9
Source: NVD

Description

A vulnerability in SonicOS allow authenticated read-only admin can elevate permissions to configuration mode. This vulnerability affected SonicOS Gen 5 version 5.9.1.12-4o and earlier, Gen 6 version 6.2.7.4-32n, 6.5.1.4-4n, 6.5.2.3-4n, 6.5.3.3-3n, 6.2.7.10-3n, 6.4.1.0-3n, 6.5.3.3-3n, 6.5.1.9-4n and SonicOSv 6.5.0.2-8v_RC363 (VMWARE), 6.5.0.2.8v_RC367 (AZURE), SonicOSv 6.5.0.2.8v_RC368 (AWS), SonicOSv 6.5.0.2.8v_RC366 (HYPER_V).

Affected (13)

2 products
Sonicos
Sonicosv
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Sonicwall
Up to 5.9.1.12-4o
Version 6.2.7.10-3n
Version 6.2.7.4-32n
Version 6.4.1.0-3n
Version 6.5.1.4-4n
Version 6.5.1.9-4n
Version 6.5.2.3-4n
Version 6.5.3.3-3n
Sonicwall
Version 6.5.0.2.8v
Version 6.5.0.2.8v rc363
Version 6.5.0.2.8v rc366
Version 6.5.0.2.8v rc367
Version 6.5.0.2.8v rc368

References (2)

Source: PSIRT@sonicwall.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.