High severity7.3NVD Advisory· Published Oct 27, 2023· Updated Jun 17, 2026
CVE-2023-44220
CVE-2023-44220
Description
SonicWall NetExtender Windows (32-bit and 64-bit) client 10.2.336 and earlier versions have a DLL Search Order Hijacking vulnerability in the start-up DLL component. Successful exploitation via a local attacker could result in command execution in the target system.
Affected products
3cpe:2.3:a:sonicwall:netextender:*:*:*:*:*:windows:*:*+ 2 more
- cpe:2.3:a:sonicwall:netextender:*:*:*:*:*:windows:*:*range: <=10.2.336
- (no CPE)range: <=10.2.336
- (no CPE)range: 10.2.336 and earlier versions
Patches
Vulnerability mechanics
References
1- psirt.global.sonicwall.com/vuln-detail/SNWLID-2023-0017nvdVendor Advisory
News mentions
0No linked articles in our index yet.