CVE-2020-5147
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 1.7%
from disclosure to weapon220 days
Published on NVDJan 9
1st PoC+220d
exploitation probability
1.7%top 26% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
SonicWall NetExtender Windows client vulnerable to unquoted service path vulnerability, this allows a local attacker to gain elevated privileges in the host operating system. This vulnerability impact SonicWall NetExtender Windows client version 10.2.300 and earlier.
Affected products
SonicWall · SonicWall NetExtenderpublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/50212unverifiedcve_referencepacketstormsecurity.com/files/163857/SonicWall-NetExtender-10.2.0.300-Unquoted-Service-Path.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.