CVE-2025-23009 & CVE-2025-23010: Elevating Privileges with SonicWall NetExtender
netspi.com | vulnerability | #windows | #lpe | #vpn | #sonicwall | #cve-2025-23009 | #cve-2025-23010 | #netextender
Summary
NetSPI found arbitrary SYSTEM file delete and overwrite flaws in SonicWall NetExtender for Windows (CVE-2025-23009, CVE-2025-23010) and chained them into local privilege escalation. Fixed in 10.3.2.
- Published
- Collected
Skip to content