5.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Description
A Path Traversal vulnerability has been identified in the Email Security appliance allows an attacker to manipulate file system paths by injecting crafted directory-traversal sequences (such as ../) and may access files and directories outside the intended restricted path.
Basic Information
ID
CVE-2025-40605
Source
sonicwall
Published
Nov 20, 2025 at 12:19
Modified
Nov 20, 2025 at 18:30
Affected Product
Vendor
SonicWall
Product
Email Security
Version
10.0.33.8195 and earlier versions
Affected Versions
SonicWall Email Security 10.0.33.8195 and earlier versions