A Reflected cross-site scripting (XSS) vulnerability exists in the SMA100 series web interface, allowing a remote unauthenticated attacker to potentially execute arbitrary JavaScript code.
2025-07-23T15:15:32.490
2025-08-07T14:36:07.667
Analyzed
CVSSv3.1: 6.1 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | sonicwall | sma_500v_firmware | < 10.2.2.1-90sv | Yes |
| Hardware | sonicwall | sma_500v | - | No |
| Operating System | sonicwall | sma_210_firmware | < 10.2.2.1-90sv | Yes |
| Hardware | sonicwall | sma_210 | - | No |
| Operating System | sonicwall | sma_410_firmware | < 10.2.2.1-90sv | Yes |
| Hardware | sonicwall | sma_410 | - | No |