CVE-2026-66152
CVSS Score
8.8
EPSS Score
0.4%
EPSS Percentile
33th
A Path traversal vulnerability in the SonicWall NetExtender Linux client file extractor component allows an attacker to write arbitrary file as root.
| CWE | CWE-29 |
| Vendor | sonicwall |
| Product | netextender |
| Published | Aug 25, 2026 |
| Last Updated | Aug 31, 2026 |
Stay Ahead of the Next One
Get instant alerts for sonicwall netextender
Be the first to know when new high vulnerabilities affecting sonicwall netextender are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
SonicWall / NetExtender
10.3.5 and earlier versions