Multiple cross-site scripting (XSS) vulnerabilities in macIpSpoofView.html in Dell SonicWall SonicOS 7.5.0.12 and 6.x allow remote attackers to inject arbitrary web script or HTML via the (1) searchSpoof or (2) searchSpoofIpDet parameter.
CVSS Details
- CVSS 3.1 Base Score: 4.7
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Sonicwall Sonicos | — | Update SonicWall SonicOS Gen7 NSsp to the latest versionUpdate SonicWall SonicOS to version 6.2.4.0-10n or laterUpdate SonicWall SonicOS to version 6.2.1.1-26n or laterUpdate SonicWall SonicOS Gen7 NSa to the latest versionUpdate SonicWall SonicOS to version 6.0.5.2-53o or laterUpdate SonicWall SonicOS Gen7 TZ to the latest versionUpdate SonicWall SonicOS Gen7 NSv to the latest version | Jun 12, 2026 | Apr 29, 2015 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub