High severity8.8NVD Advisory· Published Jul 29, 2022· Updated Jun 17, 2026
CVE-2022-2323
CVE-2022-2323
Description
Improper neutralization of special elements used in a user input allows an authenticated malicious user to perform remote code execution in the host system. This vulnerability impacts SonicWall Switch 1.1.1.0-2s and earlier versions
Affected products
9- cpe:2.3:o:sonicwall:sws12-10fpoe_firmware:*:*:*:*:*:*:*:*Range: <1.2.0.0-3
- cpe:2.3:o:sonicwall:sws12-8poe_firmware:*:*:*:*:*:*:*:*Range: <1.2.0.0-3
- cpe:2.3:o:sonicwall:sws14-24fpoe_firmware:*:*:*:*:*:*:*:*Range: <1.2.0.0-3
- cpe:2.3:o:sonicwall:sws14-48fpoe_firmware:*:*:*:*:*:*:*:*Range: <1.2.0.0-3
- SonicWall/SonicWall Switchv5Range: 1.1.1.0-2s and earlier
Patches
Vulnerability mechanics
References
1- psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0013nvdVendor Advisory
News mentions
0No linked articles in our index yet.