CVE 6.1 MEDIUM

CVE-2025-40598_CVE-2025-40598

6.1 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Description

A Reflected cross-site scripting (XSS) vulnerability exists in the SMA100 series web interface, allowing a remote unauthenticated attacker to potentially execute arbitrary JavaScript code.

Basic Information

ID CVE-2025-40598
Source sonicwall
Published Jul 23, 2025 at 14:49
Modified Jul 29, 2025 at 13:24

Affected Product

Vendor SonicWall
Product SMA 100 Series
Version 10.2.1.15-81sv and earlier versions
Affected Versions SonicWall SMA 100 Series 10.2.1.15-81sv and earlier versions

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.