Description
An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface allows an authenticated attacker with SuperAdmin privileges to inject arbitrary commands that are executed on the underlying host, resulting in remote code execution.
Published:
2026-09-04
Score:
n/a
EPSS:
n/a
KEV:
No
Impact:
n/a
Action:
n/a
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 04 Sep 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface allows an authenticated attacker with SuperAdmin privileges to inject arbitrary commands that are executed on the underlying host, resulting in remote code execution. | |
| Weaknesses | CWE-78 | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: sonicwall
Published:
Updated: 2026-09-04T19:50:05.348Z
Reserved: 2026-08-24T09:38:44.377Z
Link: CVE-2026-78327
No data.
Status : Received
Published: 2026-09-04T19:17:27.347
Modified: 2026-09-04T19:17:27.347
Link: CVE-2026-78327
No data.
OpenCVE Enrichment
No data.
Weaknesses