← Back to CVE List
Vulnerability Intelligence Report

CVE-2022-22274

A Stack-based buffer overflow vulnerability in the SonicOS via HTTP request allows a remote unauthenticated attacker to cause Denial of Service (DoS) or potentially results in code execution in the firewall.

No Active Exploit Signals
CVSS Base Score
9.8
CRITICAL
EPSS Probability:57.32%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Weaknesses (CWE)

CWE-121 ↗CWE-121: Stack-based Buffer Overflow

Affected Products & Versions

Vendor Product Affected Versions
SonicWall SonicOS SonicOS 7.0.1-5050 and earlier (affected), SonicOS 7.0.1-R579 and earlier (affected), SonicOSv 6.5.4.4-44v-21-1452 and earlier (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
57.324%

Identity & Timeline

StatusPUBLISHED
Assigning AuthoritySonicWall, Inc. · Vendor · USA
Reserved2021-12-29T00:00:00
Published2022-03-25T23:05:09
Last Updated2024-08-03T03:07:50

LINK COPIED TO CLIPBOARD