---
id: CVE-2019-7481
title: >-
  Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only
  access to unauthorized resources
summary: >-
  Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only
  access to unauthorized resources. This vulnerablity impacted SMA100 version
  9.0.0.3 and earlier.
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-89
  - CWE-89
vendor: sonicwall
product: sma_100_firmware
affected:
  - sma_100_firmware < 9.0.0.4
patched:
  - sma_100_firmware 9.0.0.4
published: '2019-12-17'
updated: '2026-08-12'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2019-7481'
references:
  - url: 'https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2019-0016'
    label: PSIRT@sonicwall.com
  - url: 'https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2019-0016'
    label: af854a3a-2127-422b-91ae-364da2661108
  - url: >-
      https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-7481
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
  - kev
  - in-the-wild
  - exploit-available
epss: 0.99906
epssPercentile: 0.99966
kev: true
kevDateAdded: '2021-11-03'
kevDueDate: '2022-05-03'
kevRansomware: true
exploited: true
ingestedAt: '2026-08-12T05:52:07.363Z'
exploits:
  nuclei:
    - CVE-2019-7481
  checkedAt: '2026-09-13T03:11:07.312Z'
exploitAvailable: true
---

## Overview

Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only access to unauthorized resources. This vulnerablity impacted SMA100 version 9.0.0.3 and earlier.

## Affected

- `sma_100_firmware < 9.0.0.4`

## Remediation

Upgrade past the affected range:

- `sma_100_firmware 9.0.0.4`
