SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  NetAlertX savesettings Remote Code Execution

Category: WEB-ATTACKS      

NetAlertX 23.01.14 through 24.x before 24.10.12 allows unauthenticated command injection via settings update because function=savesettings lacks an authentication requirement, as exploited in the wild in May 2025.


Relevant Information