Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8j6m-2r2j-2f2x

Опубликовано: 24 дек. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A vulnerability in SonicWall SMA100 password change API allows a remote unauthenticated attacker to perform SMA100 username enumeration based on the server responses. This vulnerability impacts 10.2.1.2-24sv, 10.2.0.8-37sv and earlier 10.x versions.

A vulnerability in SonicWall SMA100 password change API allows a remote unauthenticated attacker to perform SMA100 username enumeration based on the server responses. This vulnerability impacts 10.2.1.2-24sv, 10.2.0.8-37sv and earlier 10.x versions.

EPSS

Процентиль: 56%
0.00334
Низкий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-203

Связанные уязвимости

CVSS3: 7.5
nvd
около 4 лет назад

A vulnerability in SonicWall SMA100 password change API allows a remote unauthenticated attacker to perform SMA100 username enumeration based on the server responses. This vulnerability impacts 10.2.1.2-24sv, 10.2.0.8-37sv and earlier 10.x versions.

EPSS

Процентиль: 56%
0.00334
Низкий

7.5 High

CVSS3

Дефекты

CWE-200
CWE-203