SonicWall 网络安全管理器(NSM)的本地部署版本中,文件上传和归档处理功能存在 Zip Slip 漏洞。攻击者可以通过一个精心构造的压缩归档文件,将文件解压到目标目录之外。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| SonicWall | Network Security Manager (NSM) | 4.3.0 and earlier versions |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SonicWall | Network Security Manager (NSM) | 4.3.0 and earlier versions | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-78328 | SonicWall NSM On-Prem 低权限用户可提权至超级管理员 | |
| CVE-2026-78327 | SonicWall NSM命令注入致远程代码执行漏洞 |
No comments yet