← Terug naar overzicht

A Zip Slip vulnerability has been identified in SonicWall Network Security Manager (NSM) On-Prem affecting its file upload and archive processing functionality. The vulnerability allows an attacker to extract files outside the intended destination directory by using a specially crafted archive. Zip Slip vulnerabilities are a well-known class of path traversal attacks targeting archive extraction mechanisms. Successful exploitation could allow an attacker to overwrite arbitrary files on the system, potentially leading to remote code execution or privilege escalation. The vulnerability is tracked as CVE-2026-81939 and has been assigned a high criticality rating. SonicWall has published an advisory through its PSIRT portal under identifier SNWLID-2026-0015. Organizations using SonicWall NSM On-Prem should review the advisory and apply any available patches or mitigations promptly.

Affected products

  • SonicWall Network Security Manager (NSM) On-Prem

Related CVE's

  • CVE-2026-81939

Categories

  • Enterprise Applications
  • Network Infrastructure
  • Zero-Day Vulnerabilities