Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SonicWall GMS and Analytics allows an unauthenticated attacker to extract sensitive information from the application database. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.
History

Wed, 23 Apr 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: sonicwall

Published: 2023-07-13T02:28:35.751Z

Updated: 2025-04-23T16:20:21.156Z

Reserved: 2023-05-25T22:45:46.852Z

Link: CVE-2023-34133

cve-icon Vulnrichment

Updated: 2024-08-02T16:01:54.187Z

cve-icon NVD

Status : Modified

Published: 2023-07-13T03:15:09.590

Modified: 2025-04-23T17:16:33.470

Link: CVE-2023-34133

cve-icon Redhat

No data.