CVE-2020-5148 – SonicWall SSO-agent default configuration uses NetAPI to probe the associated IP’s in the …

Vuln ID: CVE-2020-5148

Published:  2021-03-05  04:15:12Z

Description: SonicWall SSO-agent default configuration uses NetAPI to probe the associated IP’s in the network, this client probing method allows a potential attacker to capture the password hash of the privileged user and potentially forces the SSO Agent to authenticate allowing an attacker to bypass firewall access controls.

Source: NVD.NIST.GOV

 


Date:

Categorie(s):

Tag(s):