Back to vendor advisories
SonicWall PSIRT AdvisoriesSNWLID-2026-0013

SonicWall NetExtender Linux Client Multiple Vulnerabilities

1) CVE-2026-66152 - SonicWall NetExtender arbitrary file write via path traversal vulnerability A Path traversal vulnerability in the SonicWall NetExtender Linux client file extractor component allows an attacker to write arbitrary file as root. CVSS Score: 8.8 CVSS Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CWE-29: Path Traversal: '\..\filename' 2) CVE-2026-66153 - SonicWall NetExtender Improper Link Resolution Before File Access ('Link Following') Vulnerability The NEService auto-upgrade process insecurely handles temporary files in SonicWall NetExtender Linux client which allows an attacker to manipulate file paths. CVSS Score: 7.0 CVSS Vector: CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/MAC:H CWE-59: Improper Link Resolution Before File Access ('Link Following') There is no evidence that these vulnerabilities are being exploited in the wild. SonicWall strongly advises users of the NetExtender Linux client to upgrade to the mentioned fixed release version to address these vulnerabilities.

8.8CVSS out of 10High severity
Scope

What the vendor says is affected

  • NetExtender Linux Client: Version 10.3.5 and earlier versions

Versions the vendor lists as fixed

  • NetExtender Linux Client: Version 10.3.6 and higher versions
Next step

What the vendor recommends

Install the applicable fixed SonicWall release for your product and branch. NetExtender Linux Client: Version 10.3.6 and higher versions

Review the complete instructions on the vendor's site
Timeline

When this advisory changed

  1. Published by SonicWall

    The publication date reported by the vendor.

  2. Updated by SonicWall

    The vendor changed the advisory after it was first published.

  3. Added to SecurityAlert

    We collected the advisory from the official source.

Vulnerabilities

CVEs named in this advisory