6.8
MEDIUM CVSS 3.1
CVE-2026-0205
SonicOS Path Traversal Vulnerability
Description

A post-authentication Path Traversal vulnerability in SonicOS allows an attacker to interact with usually restricted services.

INFO

Published Date :

April 29, 2026, 5:16 p.m.

Last Modified :

May 5, 2026, 4:12 p.m.

Remotely Exploit :

No
Affected Products

The following products are affected by CVE-2026-0205 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Sonicwall sonicos
2 Sonicwall nsa_2700
3 Sonicwall nsa_3700
4 Sonicwall nsa_4700
5 Sonicwall nsa_5700
6 Sonicwall nsa_6700
7 Sonicwall nssp_10700
8 Sonicwall nssp_11700
9 Sonicwall nssp_13700
10 Sonicwall nsv_270
11 Sonicwall nsv_470
12 Sonicwall nsv_870
13 Sonicwall tz270
14 Sonicwall tz270w
15 Sonicwall tz370
16 Sonicwall tz370w
17 Sonicwall tz470
18 Sonicwall tz470w
19 Sonicwall tz570
20 Sonicwall tz570p
21 Sonicwall tz570w
22 Sonicwall tz670
23 Sonicwall nssp_15700
24 Sonicwall nsa_2650
25 Sonicwall nsa_3600
26 Sonicwall nsa_3650
27 Sonicwall nsa_4600
28 Sonicwall nsa_4650
29 Sonicwall nsa_5600
30 Sonicwall nsa_5650
31 Sonicwall nsa_6600
32 Sonicwall nsa_6650
33 Sonicwall sm_9200
34 Sonicwall sm_9250
35 Sonicwall sm_9400
36 Sonicwall sm_9450
37 Sonicwall sm_9600
38 Sonicwall sm_9650
39 Sonicwall soho_250
40 Sonicwall soho_250w
41 Sonicwall sohow
42 Sonicwall tz_300
43 Sonicwall tz_300p
44 Sonicwall tz_300w
45 Sonicwall tz_350
46 Sonicwall tz_350w
47 Sonicwall tz_400
48 Sonicwall tz_400w
49 Sonicwall tz_500
50 Sonicwall tz_500w
51 Sonicwall tz_600
52 Sonicwall tz_600p
53 Sonicwall tz80
54 Sonicwall nsa_2800
55 Sonicwall nsa_3800
56 Sonicwall nsa_4800
57 Sonicwall nsa_5800
58 Sonicwall tz280
59 Sonicwall tz380
60 Sonicwall tz480
61 Sonicwall tz580
62 Sonicwall tz680
63 Sonicwall tz280w
64 Sonicwall tz380w
CVSS Scores
The Common Vulnerability Scoring System is a standardized framework for assessing the severity of vulnerabilities in software and systems. We collect and displays CVSS scores from various sources for each CVE.
Score Version Severity Vector Exploitability Score Impact Score Source
CVSS 3.1 MEDIUM 134c704f-9b21-4f2e-91b3-4a467353bcc0
Solution
Apply vendor patches to fix post-authentication path traversal.
  • Update SonicOS to the latest available version.
  • Restrict access to sensitive services.
  • Monitor service interactions.
References to Advisories, Solutions, and Tools

Here, you will find a curated list of external links that provide in-depth information, practical solutions, and valuable tools related to CVE-2026-0205.

URL Resource
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0004 Vendor Advisory
CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2026-0205 is associated with the following CWEs:

Common Attack Pattern Enumeration and Classification (CAPEC)

Common Attack Pattern Enumeration and Classification (CAPEC) stores attack patterns, which are descriptions of the common attributes and approaches employed by adversaries to exploit the CVE-2026-0205 weaknesses.

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2026-0205 vulnerability anywhere in the article.

  • CybersecurityNews
SonicWall SonicOS Vulnerabilities Allow Attackers to Bypass Access Controls and Crash Firewall

SonicWall has released a security advisory addressing three vulnerabilities in its SonicOS software. Discovered by the Advanced Research Team at CrowdStrike, these flaws could allow attackers to bypas ... Read more

Published Date: Apr 30, 2026 (2 weeks, 5 days ago)

The following table lists the changes that have been made to the CVE-2026-0205 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • Initial Analysis by [email protected]

    May. 05, 2026

    Action Type Old Value New Value
    Added CPE Configuration AND OR *cpe:2.3:o:sonicwall:sonicos:*:*:*:*:*:*:*:* versions up to (excluding) 6.5.5.2-28n OR cpe:2.3:h:sonicwall:soho_250:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:soho_250w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_2650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_3650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_4650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_5650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_6650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_6600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_5600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_4600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_3600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sohow:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_300:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_300w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_400:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_400w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_500:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_500w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9200:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9250:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9400:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9450:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9600:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:sm_9650:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_300p:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_600p:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_350:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz_350w:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:sonicwall:sonicos:*:*:*:*:*:*:*:* versions from (including) 7.0.0.0 up to (including) 7.0.1-5169 *cpe:2.3:o:sonicwall:sonicos:*:*:*:*:*:*:*:* versions from (including) 7.1.1-7040 up to (excluding) 7.3.2-7010 OR cpe:2.3:h:sonicwall:tz670:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz570:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz470:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz470w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz570p:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz570w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz270:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz270w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz370:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz370w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsv_270:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsv_470:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsv_870:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_13700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_15700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_6700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_4700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_2700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_3700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_5700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_10700:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nssp_11700:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:sonicwall:sonicos:*:*:*:*:*:*:*:* versions from (including) 8.0.0-8035 up to (excluding) 8.2.0-8009 OR cpe:2.3:h:sonicwall:tz80:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_2800:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_3800:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_4800:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:nsa_5800:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz280:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz380:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz480:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz580:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz680:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz280w:-:*:*:*:*:*:*:* cpe:2.3:h:sonicwall:tz380w:-:*:*:*:*:*:*:*
    Added Reference Type SonicWALL, Inc.: https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0004 Types: Vendor Advisory
  • New CVE Received by [email protected]

    Apr. 29, 2026

    Action Type Old Value New Value
    Added Description A post-authentication Path Traversal vulnerability in SonicOS allows an attacker to interact with usually restricted services.
    Added CWE CWE-35
    Added Reference https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0004
  • CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0

    Apr. 29, 2026

    Action Type Old Value New Value
    Added CVSS V3.1 AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.