Tz350
Vendor:
First CVE: Jun 14, 2021 · Active for 5 years
23
Total CVEs
More Total CVEs than 88% of tracked products
4.6
Avg CVEs / Year
Higher CVE frequency than 82% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 48% of tracked products
4.3%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Tz350 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 14, 2021
5 years ago
Most Recent CVE
Apr 29, 2026
86 days ago
CVE Severity & Scoring
Tz35023 CVEs
52%
43%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network20 (87.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network3 (13.0%)
Attack Complexity
Low22 (95.7%)
High1 (4.3%)
Unknown0 (0.0%)
User Interaction
None20 (87.0%)
Unknown0 (0.0%)
Required3 (13.0%)
Privileges Required
Low11 (47.8%)
High1 (4.3%)
None11 (47.8%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (23 CVEs).
23 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-40766CRITICAL An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditi | Aug 23, 2024 | 9.8 | 79 | YES | NO |
CVE-2021-20031MEDIUM A Host Header Redirection vulnerability in SonicOS potentially allows a remote attacker to redirect firewall management users to arbitrary web domains. | Oct 12, 2021 | 6.1 | 46 | NO | YES |
CVE-2026-0204HIGH A vulnerability in the access control mechanism of SonicOS may allow certain management interface functions to be accessible under specific conditions. | Apr 29, 2026 | 8.0 | 35 | NO | NO |
CVE-2026-0205MEDIUM A post-authentication Path Traversal vulnerability in SonicOS allows an attacker to interact with usually restricted services. | Apr 29, 2026 | 6.8 | 30 | NO | NO |
CVE-2021-20048HIGH A Stack-based buffer overflow in the SonicOS SessionID HTTP response header allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in code | Jan 10, 2022 | 8.8 | 28 | NO | NO |
CVE-2021-20046HIGH A Stack-based buffer overflow in the SonicOS HTTP Content-Length response header allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in | Jan 10, 2022 | 8.8 | 28 | NO | NO |
CVE-2026-0206MEDIUM A post-authentication Stack-based Buffer Overflow vulnerabilities in SonicOS allows a remote attacker to crash a firewall. | Apr 29, 2026 | 4.9 | 25 | NO | NO |
CVE-2023-41715HIGH SonicOS post-authentication Improper Privilege Management vulnerability in the SonicOS SSL VPN Tunnel allows users to elevate their privileges inside the tunnel.
| Oct 17, 2023 | 8.8 | 25 | NO | NO |
CVE-2022-47522HIGH The IEEE 802.11 specifications through 802.11ax allow physically proximate attackers to intercept (possibly cleartext) target-destined frames by spoofing a target's MAC address, se | Apr 15, 2023 | 7.5 | 25 | NO | NO |
CVE-2023-1101HIGH SonicOS SSLVPN improper restriction of excessive MFA attempts vulnerability allows an authenticated attacker to use excessive MFA codes. | Mar 2, 2023 | 8.8 | 25 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (23 CVEs).
CISA KEV
1 CVE
4.3% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
4.3% of CVEs· 97th percentile
ExploitDB
1 CVE
4.3% of CVEs· 89th percentile
Social Chatter
Signals from CVEs in this product scope (23 CVEs).
Media Mentions
Signals from CVEs in this product scope (23 CVEs).
Top CNAs Publishing CVEs For Tz350
Top CWEs
Versions
No cataloged versions.