A missing authorization vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface allows a lower-privileged Admin user to escalate privileges to SuperAdmin.
Metrics
Affected Vendors & Products
References
History
Mon, 07 Sep 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sonicwall
Sonicwall network Security Manager |
|
| Vendors & Products |
Sonicwall
Sonicwall network Security Manager |
Sat, 05 Sep 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 04 Sep 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Privilege Escalation via Missing Authorization in SonicWall Network Security Manager On‑Prem Management Interface |
Fri, 04 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Fri, 04 Sep 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A missing authorization vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface allows a lower-privileged Admin user to escalate privileges to SuperAdmin. | |
| Weaknesses | CWE-862 | |
| References |
|
Status: PUBLISHED
Assigner: sonicwall
Published: 2026-09-04T18:19:29.019Z
Updated: 2026-09-04T19:49:34.157Z
Reserved: 2026-08-24T09:38:46.404Z
Link: CVE-2026-78328
Updated: 2026-09-04T19:49:25.869Z
Status : Awaiting Analysis
Published: 2026-09-04T19:17:27.463
Modified: 2026-09-08T19:12:59.557
Link: CVE-2026-78328
No data.