Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

SonicWall, Inc.

First CVE: Jan 9, 2001Active for: 26 yearsTotal CVEs: 230
74.2
VTI Score
TOP TARGET

SonicWall is a broadly represented vendor of network security appliances, including firewalls and unified threat management platforms, with a large installed base spanning enterprise and small-business deployments worldwide. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity and a strong tendency to acquire public exploit code; a moderate share have been confirmed as exploited in the wild and cataloged by CISA. The exposure concentrates in flagship products such as SonicOS and the TZ series firewall line and recurs through memory-safety and authentication weakness classes including stack-based and classic buffer overflows, out-of-bounds writes, cross-site scripting, and improper authentication—patterns endemic to firmware-based network appliances that parse untrusted traffic and manage administrative access. Defenders should prioritize patching internet-facing SonicWall devices and inventory end-of-life models, as their perimeter role and persistent deployment make them high-value targets for initial access and lateral pivoting. Current exploitation activity, severity counts, and KEV status are shown alongside this summary.

FAUCET AI Generated
230
Total CVEs
More Total CVEs than 100% of tracked vendors
0.0
Avg CVEs / Product / Year
Bottom 1%
7.5
Avg CVSS Score
Higher Avg CVSS Score than 57% of tracked vendors
9.1%
In CISA KEV
Higher KEV Rate than 100% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by SonicWall, Inc. over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 9, 2001
25 years ago
Most Recent CVE
Jul 14, 2026
10 days ago

Products(352 total)

Top CVEs

Signals from CVEs in this vendor scope (230 CVEs).

230 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2021-44228CRITICAL
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect agai
Dec 10, 202110.099YESYES
CVE-2024-53704CRITICAL
An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication.
Jan 9, 20259.898YESYES
CVE-2022-0847HIGH
A flaw was found in the way the "flags" member of the new pipe buffer structure was lacking proper initialization in copy_page_to_iter_pipe and push_pipe functions in the Linux ker
Mar 10, 20227.898YESYES
CVE-2021-45046CRITICAL
It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allows attackers with control over Threa
Dec 14, 20219.098YESYES
CVE-2021-20038CRITICAL
A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables allows a remote unauthenticated attacker to potentially execute cod
Dec 8, 20219.898YESYES
CVE-2024-38475CRITICAL
Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the se
Jul 1, 20249.197YESYES
CVE-2021-20021CRITICAL
A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host.
Apr 9, 20219.896YESYES
CVE-2019-7481HIGH
Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only access to unauthorized resources. This vulnerablity impacted SMA100 version 9.0.0.3 and earlier.
Dec 17, 20197.596YESYES
CVE-2026-15409CRITICAL
A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the
Jul 14, 202610.093YESYES
CVE-2023-44221HIGH
Improper neutralization of special elements in the SMA100 SSL-VPN management interface allows a remote authenticated attacker with administrative privilege to inject arbitrary comm
Dec 5, 20237.291YESNO
View all 230 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products230 CVEs
33%
45%
20%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local19 (8.3%)
Network171 (74.3%)
Unknown35 (15.2%)
Physical0 (0.0%)
Adjacent Network5 (2.2%)
Attack Complexity
Low181 (78.7%)
High14 (6.1%)
Unknown35 (15.2%)
User Interaction
None179 (77.8%)
Unknown35 (15.2%)
Required16 (7.0%)
Privileges Required
Low59 (25.7%)
High25 (10.9%)
None111 (48.3%)
Unknown35 (15.2%)

Exploit Exposure

Signals from CVEs in this vendor scope (230 CVEs).

CISA KEV
21 CVEs
9.1% of CVEs· 100th percentile
Metasploit
16 CVEs
7.0% of CVEs· 98th percentile
Nuclei
12 CVEs
5.2% of CVEs· 96th percentile
ExploitDB
28 CVEs
12.2% of CVEs· 76th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by SonicWall, Inc..

Media Mentions

Media articles that mention a CVE ID that affects a product developed by SonicWall, Inc. — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For SonicWall, Inc.'s Products

View all 7 CNAs →

Top CWEs