Posting Date: 2026/09/04
【Vulnerability Alert】High-Risk Security Vulnerability in SonicWall NetExtender Linux (CVE-2026-66152), Please Verify and Patch Immediately
- Subject: 【Vulnerability Alert】High-Risk Security Vulnerability in SonicWall NetExtender Linux (CVE-2026-66152), Please Verify and Patch Immediately
- Description:
- Forwarded Security Alert from National Information Security Sharing and Analysis Center (NISAC) Alert ID: NISAC-200-202609-00000004
- Researchers have discovered a Path Traversal vulnerability (CVE-2026-66152) in SonicWall NetExtender Linux. An unauthenticated remote attacker could exploit the archive extraction component to write arbitrary files with root privileges. Please verify and apply patches as soon as possible.
- Affected Systems:
- NetExtender Linux Client 10.3.5 and earlier versions
- Recommendations:
- The vendor has released a security patch for this vulnerability. Please upgrade to NetExtender Linux Client 10.3.6 or later. For detailed information, please refer to the official advisory at: https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0013
- References:
Computer and Communication Center
Network System Division