Critical severity9.8NVD Advisory· Published Dec 31, 2019· Updated Jun 17, 2026
CVE-2019-7478
CVE-2019-7478
Description
A vulnerability in GMS allow unauthenticated user to SQL injection in Webservice module. This vulnerability affected GMS versions GMS 8.4, 8.5, 8.6, 8.7, 9.0 and 9.1.
Affected products
9cpe:2.3:a:sonicwall:global_management_system:8.4:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:sonicwall:global_management_system:8.4:*:*:*:*:*:*:*
- cpe:2.3:a:sonicwall:global_management_system:8.5:*:*:*:*:*:*:*
- cpe:2.3:a:sonicwall:global_management_system:8.6:*:*:*:*:*:*:*
- cpe:2.3:a:sonicwall:global_management_system:8.7:*:*:*:*:*:*:*
- cpe:2.3:a:sonicwall:global_management_system:9.0:*:*:*:*:*:*:*
- cpe:2.3:a:sonicwall:global_management_system:9.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- psirt.global.sonicwall.com/vuln-detail/SNWLID-2019-0011nvdVendor Advisory
News mentions
0No linked articles in our index yet.