CVE-2020-5148

SonicWall SSO-agent default configuration uses NetAPI to probe the associated IP's in the network, this client probing method allows a potential attacker to capture the password hash of the privileged user and potentially forces the SSO Agent to authenticate allowing an attacker to bypass firewall access controls.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:sonicwall:directory_services_connector:*:*:*:*:*:*:*:*

Information

Published : 2021-03-04 20:15

Updated : 2021-03-15 10:06


NVD link : CVE-2020-5148

Mitre link : CVE-2020-5148


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

sonicwall

  • directory_services_connector