A flaw within the SonicWall NetExtender Pre-Logon feature enables an unauthorized user to gain access to the host Windows operating system with SYSTEM level privileges, leading to a local privilege escalation (LPE) vulnerability.
A particular privilege, role, capability, or right can be used to perform unsafe actions that were not intended, even when it is assigned to the correct entity.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Netextender | Sonicwall | * | 10.2.336 (including) |