Back to vendor advisories
SonicWall PSIRT AdvisoriesSNWLID-2026-0015

SonicWall NSM On-Prem Affected By Multiple Vulnerabilities

1) CVE-2026-78327 - Authenticated Command Injection Vulnerability An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface allows an authenticated attacker with SuperAdmin privileges to inject arbitrary commands that are executed on the underlying host, resulting in remote code execution. CVSS Score: 9.1 CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') 2) CVE-2026-78328 - Privilege Escalation from Admin to SuperAdmin Vulnerability A missing authorization vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface allows a lower-privileged Admin user to escalate privileges to SuperAdmin. CVSS Score: 7.2 CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H CWE-862: Missing Authorization 3) CVE-2026-81939 - Zip Slip Vulnerability A Zip Slip vulnerability in the SonicWall Network Security Manager (NSM) On-Prem file upload and archive processing functionality allows an attacker to extract files outside the intended destination directory using a specially crafted archive. CVSS Score: 9.1 CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') SonicWall strongly advises users of the Network Security Manager (NSM) On-Prem (VMWare, Hyper-V, Azure and KVM) to upgrade to the mentioned fixed release version to address these vulnerabilities. There is currently no evidence any of the vulnerabilities addressed in this release are being exploited in the wild and NSM SaaS versions are not affected by these vulnerabilities.

9.1CVSS out of 10Critical severity
Scope

What the vendor says is affected

  • Affected Product(s): Affected Versions
  • Network Security Manager (NSM) On-Prem (VMWare, Hyper-V, Azure and KVM): 4.3.0 and earlier versions.

Versions the vendor lists as fixed

  • Fixed Product(s): Fixed Versions
  • Network Security Manager (NSM) On-Prem (VMWare, Hyper-V, Azure and KVM): 4.3.1-R4 and higher versions.
Next step

What the vendor recommends

Install the applicable fixed SonicWall release for your product and branch. Fixed Product(s): Fixed Versions Network Security Manager (NSM) On-Prem (VMWare, Hyper-V, Azure and KVM): 4.3.1-R4 and higher versions.

Review the complete instructions on the vendor's site
Timeline

When this advisory changed

  1. Published by SonicWall

    The publication date reported by the vendor.

  2. Updated by SonicWall

    The vendor changed the advisory after it was first published.

  3. Added to SecurityAlert

    We collected the advisory from the official source.

Vulnerabilities

CVEs named in this advisory