CVE-2026-0205Disclosure(sonicwall / nsa_2650)

LOWCVSS 6.8 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch sonicwall nsa_2650 systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A post-authentication Path Traversal vulnerability in SonicOS allows an attacker to interact with usually restricted services.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-35

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • nsa_2650
  • nsa_2700
  • nsa_2800
  • nsa_3600

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 3 mentions (2026-04-30); latest day: 1
  • 5 total mentions across 3 days

Affected systems

Vendors
Products
nsa_2650nsa_2700nsa_2800nsa_3600nsa_3650nsa_3700nsa_3800nsa_4600nsa_4650nsa_4700

1 version affected across 64 products

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-04-29: 1Mentions · 2026-04-30: 3Mentions · 2026-05-06: 1Patch / Workaround · 2026-04-30: 2Technical Details · 2026-04-29: 1Technical Details · 2026-04-30: 204-2904-3005-06
Signal classification3 categories
Disclosure
240.0%
Patch
240.0%
General
120.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-291
Disclosure1
2026-04-303
Disclosure1Patch2
2026-05-061
General1
Full discourse5 posts
  • Autumn Good@autumn_good_35
    Disclosure

    1) CVE-2026-0204 - SonicOS Improper Access Control Vulnerability 2) CVE-2026-0205 - SonicOS post-authentication Path Traversal vulnerability 3) CVE-2026-0206 - SonicOS post-authentication Stack-based Buffer Overflow vulnerability https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0004

    Post summary

    Three new SonicOS vulnerabilities are disclosed: an Improper Access Control issue (CVE‑2026‑0204), a post-authentication Path Traversal flaw (CVE‑2026‑0205), and a post-authentication Stack-based Buffer Overflow (CVE‑2026‑0206). No exploitation, remediation, or PoC details are provided in the excerpt.

    00010393
    6.8K followersView on X
  • CCB Alert@CCBalert
    Patch

    Warning: #SonicWall patched 3 vulnerabilities in #SonicOS (CVE-2026-0204, CVSS 8.1; CVE-2026-0205, CVSS 6.8; CVE-2026-0206, CVSS 4.9). The vulnerabilities can lead to unauthorized access and firewall disruption. Time to #Patch #Patch #Patch

    Post summary

    SonicWall has applied patches to three CVEs in SonicOS, with CVSS scores ranging from 4.9 to 8.1, mitigating risks of unauthorized access and firewall disruption.

    01000242
    7.2K followersView on X
  • Stuart 🇨🇷@stooee_
    General

    After analyzing 45% of vulnerabilities from past week, CVE-2026-0205 has 4 articles published from different internet sources, no other cve has these many articles. More information here: https://cves.st00ee.com/ #vulnerability #CyberSecurity #ThreatIntel #CVE #SecurityAlert

    Post summary

    The post highlights that CVE-2026-0205 has received notable media coverage, but provides no technical, exploit, or patch details.

    0000061
    69 followersView on X
  • breachcache@breachcache
    Patch

    Patch your SonicWalls ASAP and don’t publicly expose your management console! CVE-2026-0204 CVE-2026-0205 CVE-2026-0206 https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0004

    Post summary

    The message urges SonicWall customers to apply patches for CVE‑2026‑0204, ‑0205, and ‑0206 and warns against publicly exposing the management console.

    0000073
    24 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-0205 A post-authentication Path Traversal vulnerability in SonicOS allows an attacker to interact with usually restricted services. https://www.cve.org/CVERecord?id=CVE-2026-0205

    Post summary

    The tweet references CVE‑2026‑0205, describing it as a post‑authentication path traversal in SonicOS that could enable attackers to access restricted services, but offers no evidence of exploitation, patching, or PoC.

    0000099
    57.3K followersView on X
CPE platform detail64 entries

64 of 64 entries

PartVendorProductVersionTarget SWTarget HW
HWsonicwallnsa_2650---
HWsonicwallnsa_2700---
HWsonicwallnsa_2800---
HWsonicwallnsa_3600---
HWsonicwallnsa_3650---
HWsonicwallnsa_3700---
HWsonicwallnsa_3800---
HWsonicwallnsa_4600---
HWsonicwallnsa_4650---
HWsonicwallnsa_4700---
HWsonicwallnsa_4800---
HWsonicwallnsa_5600---
HWsonicwallnsa_5650---
HWsonicwallnsa_5700---
HWsonicwallnsa_5800---
HWsonicwallnsa_6600---
HWsonicwallnsa_6650---
HWsonicwallnsa_6700---
HWsonicwallnssp_10700---
HWsonicwallnssp_11700---
HWsonicwallnssp_13700---
HWsonicwallnssp_15700---
HWsonicwallnsv_270---
HWsonicwallnsv_470---
HWsonicwallnsv_870---
HWsonicwallsm_9200---
HWsonicwallsm_9250---
HWsonicwallsm_9400---
HWsonicwallsm_9450---
HWsonicwallsm_9600---
HWsonicwallsm_9650---
HWsonicwallsoho_250---
HWsonicwallsoho_250w---
HWsonicwallsohow---
OSsonicwallsonicos---
HWsonicwalltz270---
HWsonicwalltz270w---
HWsonicwalltz280---
HWsonicwalltz280w---
HWsonicwalltz370---
HWsonicwalltz370w---
HWsonicwalltz380---
HWsonicwalltz380w---
HWsonicwalltz470---
HWsonicwalltz470w---
HWsonicwalltz480---
HWsonicwalltz570---
HWsonicwalltz570p---
HWsonicwalltz570w---
HWsonicwalltz580---
HWsonicwalltz670---
HWsonicwalltz680---
HWsonicwalltz80---
HWsonicwalltz_300---
HWsonicwalltz_300p---
HWsonicwalltz_300w---
HWsonicwalltz_350---
HWsonicwalltz_350w---
HWsonicwalltz_400---
HWsonicwalltz_400w---
HWsonicwalltz_500---
HWsonicwalltz_500w---
HWsonicwalltz_600---
HWsonicwalltz_600p---

Explore more