VYPR
High severity8.8NVD Advisory· Published Oct 3, 2023· Updated Jun 17, 2026

CVE-2023-44218

CVE-2023-44218

Description

A flaw within the SonicWall NetExtender Pre-Logon feature enables an unauthorized user to gain access to the host Windows operating system with 'SYSTEM' level privileges, leading to a local privilege escalation (LPE) vulnerability.

Affected products

3
  • cpe:2.3:a:sonicwall:netextender:*:*:*:*:*:windows:*:*+ 2 more
    • cpe:2.3:a:sonicwall:netextender:*:*:*:*:*:windows:*:*range: <=10.2.336
    • (no CPE)
    • (no CPE)range: 10.2.336 and earlier versions

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.