Junglewise Threat Intelligence

CVE-2026-3470: SonicWall Email Security database corruption via improper input sanitization

CVE-2026-3470 · Severity: low · CVSS 3.8 · Published 2026-03-31

Technologies: SonicWall Esa9000, SonicWall Esa7050, SonicWall Esa7000, SonicWall Esa5000, SonicWall Esa5050, SonicWall Email Security. Vendors: SonicWall.

Executive brief

A vulnerability in SonicWall Email Security appliances could allow an authorized administrator to inadvertently or maliciously corrupt the system's database. This appliance is used to protect corporate email from threats like spam and phishing. While the risk is low because it requires high-level administrative access, an exploit could lead to data integrity issues or service disruptions within the email security environment.

Technical details

An improper input validation vulnerability (CWE-20) exists in the SonicWall Email Security appliance. The flaw is located in the input sanitization mechanisms, where crafted input provided by a remote authenticated user with administrative privileges (PR:H) can lead to data corruption within the application database. The attack vector is network-based and does not require user interaction. While the impact is limited to integrity and availability of the database, it requires high-level credentials to execute. Affected versions include 10.0.34.8215, 10.0.34.8223, and earlier.

Affected products

  • SonicWall Email Security 10.0.34.8215 and earlier; 10.0.34.8223 and earlier

Timeline

  • 2026-03-31: disclosed
  • 2026-03-31: advisory

References

Related threats