VYPR
Critical severity9.8NVD Advisory· Published Dec 31, 2019· Updated Jun 17, 2026

CVE-2019-7478

CVE-2019-7478

Description

A vulnerability in GMS allow unauthenticated user to SQL injection in Webservice module. This vulnerability affected GMS versions GMS 8.4, 8.5, 8.6, 8.7, 9.0 and 9.1.

Affected products

9
  • cpe:2.3:a:sonicwall:global_management_system:8.4:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:sonicwall:global_management_system:8.4:*:*:*:*:*:*:*
    • cpe:2.3:a:sonicwall:global_management_system:8.5:*:*:*:*:*:*:*
    • cpe:2.3:a:sonicwall:global_management_system:8.6:*:*:*:*:*:*:*
    • cpe:2.3:a:sonicwall:global_management_system:8.7:*:*:*:*:*:*:*
    • cpe:2.3:a:sonicwall:global_management_system:9.0:*:*:*:*:*:*:*
    • cpe:2.3:a:sonicwall:global_management_system:9.1:*:*:*:*:*:*:*
  • GMS/GMSllm-create
    Range: 8.4, 8.5, 8.6, 8.7, 9.0, 9.1
  • SonicWall/GMSllm-fuzzy2 versions
    8.4, 8.5, 8.6, 8.7, 9.0, 9.1+ 1 more
    • (no CPE)range: 8.4, 8.5, 8.6, 8.7, 9.0, 9.1
    • (no CPE)range: GMS 8.4

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.