Back to search
CVE-2023-34127
Published: Jul 13, 2023
Modified: Apr 23, 2025
PUBLISHED
Description
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in SonicWall GMS, SonicWall Analytics enables an authenticated attacker to execute arbitrary code with root privileges. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.
| Vendor | Product | Versions |
|---|---|---|
SonicWall | GMS | affected 9.3.2-SP1 and earlier versions |
SonicWall | Analytics | affected 2.5.0.4-R7 and earlier versions |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now