PublicCVE

CVE-2025-40603

MEDIUM4.5JSON exportCreate alert

Description

A potential exposure of sensitive information in log files in SonicWall SMA100 Series appliances may allow a remote, authenticated administrator, under certain conditions to view partial users credential data.

CVSS breakdown

CVSS 3.1
Attack Vector
Network
Attack Complexity
Low
Privileges Required
High
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None

Affected products

  • SonicWall / SMA10010.2.2.2-92sv and earlier versions – 10.2.2.2-92sv and earlier versions