Executive brief
A vulnerability in SonicWall Email Security appliances could allow an authorized administrator to inadvertently or maliciously corrupt the system's database. This appliance is used to protect corporate email from threats like spam and phishing. While the risk is low because it requires high-level administrative access, an exploit could lead to data integrity issues or service disruptions within the email security environment.
Technical details
An improper input validation vulnerability (CWE-20) exists in the SonicWall Email Security appliance. The flaw is located in the input sanitization mechanisms, where crafted input provided by a remote authenticated user with administrative privileges (PR:H) can lead to data corruption within the application database. The attack vector is network-based and does not require user interaction. While the impact is limited to integrity and availability of the database, it requires high-level credentials to execute. Affected versions include 10.0.34.8215, 10.0.34.8223, and earlier.
Affected products
- SonicWall Email Security 10.0.34.8215 and earlier; 10.0.34.8223 and earlier
Timeline
- 2026-03-31: disclosed
- 2026-03-31: advisory