Security Advisory

CVE-2023-44221

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-12-05 20:10:35
Last updated 2025-10-21 23:05:30
Assigner sonicwall
State PUBLISHED

Description

Improper neutralization of special elements in the SMA100 SSL-VPN management interface allows a remote authenticated attacker with administrative privilege to inject arbitrary commands as a nobody user, potentially leading to OS Command Injection Vulnerability.