Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

CVE-2025-23009 & CVE-2025-23010: Elevating Privileges with SonicWall NetExtender

Summary

NetSPI found arbitrary SYSTEM file delete and overwrite flaws in SonicWall NetExtender for Windows (CVE-2025-23009, CVE-2025-23010) and chained them into local privilege escalation. Fixed in 10.3.2.
Published
Collected

original ↗