Share of each bar's KEVs linked to ransomware. Thresholds track the catalog average of 20.9%, so they stay meaningful as it grows. Bars under 5 KEVs are left uncoloured — too few to rate a share.
Share of each bar's KEVs linked to ransomware. Thresholds track the catalog average of 20.9%, so they stay meaningful as it grows. Bars under 5 KEVs are left uncoloured — too few to rate a share.
| CVE | Vendor | Product | Vulnerability | CVSS | Added | Due per BOD 22-01 | Ransomware |
|---|---|---|---|---|---|---|---|
| CVE-2026-83549 | SonicWall | SMA1000 Appliances | SonicWall SMA1000 Appliances OS Command Injection Vulnerability SonicWall SMA1000 Appliances contains an OS command injection vulnerability that could enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution. | 7.8 CISA | 2026-09-02 | 2026-09-05 | Unknown |
| CVE-2026-83548 | SonicWall | SMA1000 Appliances | SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability SonicWall SMA1000 Appliances contains a server-side request forgery vulnerability that could allow a remote unauthenticated attacker to gain unauthorized access to sensitive functionality and perform unauthorized operations. | 10.0 CISA | 2026-09-02 | 2026-09-05 | Unknown |
| CVE-2026-15410 | SonicWall | SMA1000 Appliances | SonicWall SMA1000 Appliances Code Injection Vulnerability SonicWall SMA1000 Appliances contain a code injection vulnerability which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands. | 7.2 CISA | 2026-07-14 | 2026-07-17 | Known |
| CVE-2026-15409 | SonicWall | SMA1000 Appliances | SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability SonicWall SMA1000 Appliances contain a server-side request forgery vulnerability that could allow a remote unauthenticated attacker to potentially cause the appliance to make requests to unintended location. | 10.0 CISA | 2026-07-14 | 2026-07-17 | Known |
| CVE-2025-40602 | SonicWall | SMA1000 appliance | SonicWall SMA1000 Missing Authorization Vulnerability SonicWall SMA1000 contains a missing authorization vulnerability that could allow for privilege escalation appliance management console (AMC) of affected devices. | 6.6 CISA | 2025-12-17 | 2025-12-24 | Unknown |
| CVE-2023-44221 | SonicWall | SMA100 Appliances | SonicWall SMA100 Appliances OS Command Injection Vulnerability SonicWall SMA100 appliances contain an OS command injection vulnerability in the SSL-VPN management interface that allows a remote, authenticated attacker with administrative privilege to inject arbitrary commands as a 'nobody' user. | 7.2 CISA | 2025-05-01 | 2025-05-22 | Unknown |
| CVE-2021-20035 | SonicWall | SMA100 Appliances | SonicWall SMA100 Appliances OS Command Injection Vulnerability SonicWall SMA100 appliances contain an OS command injection vulnerability in the management interface that allows a remote authenticated attacker to inject arbitrary commands as a 'nobody' user, which could potentially lead to code execution. | 6.5 CISA | 2025-04-16 | 2025-05-07 | Unknown |
| CVE-2024-53704 | SonicWall | SonicOS | SonicWall SonicOS SSLVPN Improper Authentication Vulnerability SonicWall SonicOS contains an improper authentication vulnerability in the SSLVPN authentication mechanism that allows a remote attacker to bypass authentication. | 8.2 CISA | 2025-02-18 | 2025-03-11 | Known |
| CVE-2025-23006 | SonicWall | SMA1000 Appliances | SonicWall SMA1000 Appliances Deserialization Vulnerability SonicWall SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC) contain a deserialization of untrusted data vulnerability, which can enable a remote, unauthenticated attacker to execute arbitrary OS commands. | 9.8 CISA | 2025-01-24 | 2025-02-14 | Known |
| CVE-2024-40766 | SonicWall | SonicOS | SonicWall SonicOS Improper Access Control Vulnerability SonicWall SonicOS contains an improper access control vulnerability that could lead to unauthorized resource access and, under certain conditions, may cause the firewall to crash. | 9.3 CISA | 2024-09-09 | 2024-09-30 | Known |
| CVE-2019-7483 | SonicWall | SMA100 | SonicWall SMA100 Directory Traversal Vulnerability In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user to test for the presence of a file on the server. | 7.5 CISA | 2022-03-28 | 2022-04-18 | Unknown |
| CVE-2021-20028 | SonicWall | Secure Remote Access (SRA) | SonicWall Secure Remote Access (SRA) SQL Injection Vulnerability SonicWall Secure Remote Access (SRA) products contain an improper neutralization of a SQL Command leading to SQL injection. | 9.8 CISA | 2022-03-28 | 2022-04-18 | Known |
| CVE-2020-5135 | SonicWall | SonicOS | SonicWall SonicOS Buffer Overflow Vulnerability A buffer overflow vulnerability in SonicOS allows a remote attacker to cause Denial of Service (DoS) and potentially execute arbitrary code by sending a malicious request to the firewall. | 9.8 CISA | 2022-03-15 | 2022-04-05 | Known |
| CVE-2021-20038 | SonicWall | SMA 100 Appliances | SonicWall SMA 100 Appliances Stack-Based Buffer Overflow Vulnerability SonicWall SMA 100 devies are vulnerable to an unauthenticated stack-based buffer overflow vulnerability where exploitation can result in code execution. | 9.8 CISA | 2022-01-28 | 2022-02-11 | Known |
| CVE-2021-20016 | SonicWall | SSLVPN SMA100 | SonicWall SSLVPN SMA100 SQL Injection Vulnerability SonicWall SSLVPN SMA100 contains a SQL injection vulnerability that allows remote exploitation for credential access by an unauthenticated attacker. | 9.8 CISA | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-20023 | SonicWall | SonicWall Email Security | SonicWall Email Security Path Traversal Vulnerability SonicWall Email Security contains a path traversal vulnerability that allows a post-authenticated attacker to read files on the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20022 to achieve privilege escalation. | 4.9 CISA | 2021-11-03 | 2021-11-17 | Known |
| CVE-2021-20022 | SonicWall | SonicWall Email Security | SonicWall Email Security Unrestricted Upload of File Vulnerability SonicWall Email Security contains an unrestricted upload of file with dangerous type vulnerability that allows a post-authenticated attacker to upload a file to the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20023 to achieve privilege escalation. | 7.2 CISA | 2021-11-03 | 2021-11-17 | Known |
| CVE-2019-7481 | SonicWall | SMA100 | SonicWall SMA100 SQL Injection Vulnerability SonicWall SMA100 contains a SQL injection vulnerability allowing an unauthenticated user to gain read-only access to unauthorized resources. | 7.5 CISA | 2021-11-03 | 2022-05-03 | Known |
| CVE-2021-20021 | SonicWall | SonicWall Email Security | SonicWall Email Security Improper Privilege Management Vulnerability SonicWall Email Security contains an improper privilege management vulnerability that allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20022 and CVE-2021-20023 to achieve privilege escalation. | 9.8 CISA | 2021-11-03 | 2021-11-17 | Known |