
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2020-5131 is a security vulnerability affecting the SonicWall NetExtender Windows client version 9.0.815 and earlier. The vulnerability was discovered and disclosed in December 2019, as indicated by the CVE record creation date. This arbitrary file write vulnerability allows attackers to overwrite a DLL and execute code with the same privileges in the host operating system (NVD, CVE).
The vulnerability is classified as an arbitrary file write vulnerability that specifically affects the SonicWall NetExtender Windows client. The issue allows an attacker to overwrite a DLL file, which can lead to code execution with the same privileges as the host operating system (NVD).
If successfully exploited, this vulnerability allows attackers to execute code with the same privileges as the host operating system, potentially leading to unauthorized control over the affected system (NVD).
The vulnerability affects SonicWall NetExtender Windows client version 9.0.815 and earlier versions. The arbitrary file write capability makes this vulnerability particularly concerning as it provides a direct path to code execution (NVD).
Users should upgrade to a version newer than SonicWall NetExtender Windows client 9.0.815. The vulnerability has been addressed in subsequent releases (CVE).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."