securityonline.info 8/12/2026, 2:32:07 AM · external

SonicWall fixes critical RCE bug CVE-2026-66147 in GMS, Email

SonicWall fixes critical RCE bug CVE-2026-66147 in GMS, Email
CyberSIXT Evidence Panel
CISA KEV Not in KEV
Patch Patch Status Unknown

SONICWALL disclosed critical vulnerabilities in its GMS and Email Security products on August 11, 2026. The most severe vulnerability, CVE-2026-66147, has a CVSS score of 9.4, allowing unauthenticated remote code execution on affected servers. Affected products include SonicWall GMS (Virtual Appliance and Windows builds 9.5.1 and earlier) and Email Security (version 10.0.35.8405 and earlier). There are a total of three flaws reported in GMS and two in Email Security, with no confirmed exploitation yet. Users are advised to upgrade to patched versions for protection against potential attacks.

View Primary Source Via securityonline.info

Article by CyberSIXT