Nsa6700
Vendor:
First CVE: Jun 14, 2021 · Active for 5 years
36
Total CVEs
More Total CVEs than 86% of tracked products
6.0
Avg CVEs / Year
Higher CVE frequency than 95% of tracked products
7.1
Avg CVSS
Higher Avg CVSS than 39% of tracked products
5.6%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Nsa6700 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 14, 2021
5 years ago
Most Recent CVE
Apr 29, 2026
87 days ago
CVE Severity & Scoring
Nsa670036 CVEs
50%
36%
14%
All CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network34 (94.4%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network2 (5.6%)
Attack Complexity
Low36 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None33 (91.7%)
Unknown0 (0.0%)
Required3 (8.3%)
Privileges Required
Low12 (33.3%)
High6 (16.7%)
None18 (50.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (36 CVEs).
36 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-53704CRITICAL An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication. | Jan 9, 2025 | 9.8 | 98 | YES | YES |
CVE-2024-40766CRITICAL An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditi | Aug 23, 2024 | 9.8 | 79 | YES | NO |
CVE-2022-22274CRITICAL A Stack-based buffer overflow vulnerability in the SonicOS via HTTP request allows a remote unauthenticated attacker to cause Denial of Service (DoS) or potentially results in code | Mar 25, 2022 | 9.8 | 63 | NO | NO |
CVE-2021-20031MEDIUM A Host Header Redirection vulnerability in SonicOS potentially allows a remote attacker to redirect firewall management users to arbitrary web domains. | Oct 12, 2021 | 6.1 | 46 | NO | YES |
CVE-2023-0656HIGH A Stack-based buffer overflow vulnerability in the SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS), which could cause an impacted firewall to cras | Mar 2, 2023 | 7.5 | 39 | NO | NO |
CVE-2025-40600CRITICAL Use of Externally-Controlled Format String vulnerability in the SonicOS SSL VPN interface allows a remote unauthenticated attacker to cause service disruption. | Jul 29, 2025 | 9.8 | 36 | NO | NO |
CVE-2026-0204HIGH A vulnerability in the access control mechanism of SonicOS may allow certain management interface functions to be accessible under specific conditions. | Apr 29, 2026 | 8.0 | 35 | NO | NO |
CVE-2026-0205MEDIUM A post-authentication Path Traversal vulnerability in SonicOS allows an attacker to interact with usually restricted services. | Apr 29, 2026 | 6.8 | 30 | NO | NO |
CVE-2024-22394CRITICAL An improper authentication vulnerability has been identified in SonicWall SonicOS SSL-VPN feature, which in specific conditions could allow a remote attacker to bypass authenticati | Feb 8, 2024 | 9.8 | 30 | NO | NO |
CVE-2025-40601HIGH A Stack-based buffer overflow vulnerability in the SonicOS SSLVPN service allows a remote unauthenticated attacker to cause Denial of Service (DoS), which could cause an impacted f | Nov 20, 2025 | 7.5 | 29 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (36 CVEs).
CISA KEV
2 CVEs
5.6% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
2 CVEs
5.6% of CVEs· Bottom 1%
ExploitDB
1 CVE
2.8% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (36 CVEs).
Media Mentions
Signals from CVEs in this product scope (36 CVEs).
Top CWEs
Versions
No cataloged versions.