An authenticated command injection vulnerability was identified in GMS Command-Line Interface (CLI) 9.5.1 (Build 9510.1044) and earlier versions which allows low-privileged local user to execute system commands with root privileges.
Metrics
Affected Vendors & Products
References
History
Thu, 13 Aug 2026 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sonicwall
Sonicwall gms |
|
| Vendors & Products |
Sonicwall
Sonicwall gms |
Thu, 13 Aug 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Authenticated Command Injection in SonicWall GMS CLI Enables Local Privilege Escalation |
Tue, 11 Aug 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 11 Aug 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated command injection vulnerability was identified in GMS Command-Line Interface (CLI) 9.5.1 (Build 9510.1044) and earlier versions which allows low-privileged local user to execute system commands with root privileges. | |
| Weaknesses | CWE-94 | |
| References |
|
Status: PUBLISHED
Assigner: sonicwall
Published: 2026-08-11T20:10:39.663Z
Updated: 2026-08-11T21:11:09.052Z
Reserved: 2026-07-24T08:34:11.798Z
Link: CVE-2026-66148
Updated: 2026-08-11T21:11:06.315Z
Status : Awaiting Analysis
Published: 2026-08-11T21:17:49.287
Modified: 2026-08-28T18:58:27.140
Link: CVE-2026-66148
No data.