vulnerability

SonicWall GMS: CVE-2023-34129: Post-Authenticated Arbitrary File Write via Web Service (Zip Slip)

Severity
8
CVSS
(AV:N/AC:L/Au:S/C:N/I:C/A:P)
Published
Jul 12, 2023
Added
Jul 14, 2023
Modified
Jul 24, 2023

Description

A vulnerability in SonicWall GMS allows for Post-Authenticated Arbitrary File Write via Web Service (Zip Slip). This vulnerability impacts GMS versions 9.3.2-SP1 and before

Solution

sonicwall-gms-upgrade-9-3
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.