VYPR

NetExtender Linux client

by SonicWall

CVEs (2)

  • CVE-2026-66152HigAug 25, 2026
    risk 0.57cvss 8.8epss 0.01

    A Path traversal vulnerability in the SonicWall NetExtender Linux client file extractor component allows an attacker to write arbitrary file as root.

  • CVE-2026-66153HigAug 25, 2026
    risk 0.46cvss 7.0epss 0.00

    The NEService auto-upgrade process insecurely handles temporary files in SonicWall NetExtender Linux client which allows an attacker to manipulate file paths.