CVE-2013-1359
SonicWALL Gms 6 - Arbitrary File Upload
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
6Exploited in Wild
-Decision
Descriptions
An Authentication Bypass Vulnerability exists in DELL SonicWALL Analyzer 7.0, Global Management System (GMS) 4.1, 5.0, 5.1, 6.0, and 7.0; Universal Management Appliance (UMA) 5.1, 6.0, and 7.0 and ViewPoint 4.1, 5.0, 5.1, and 6.0 via the skipSessionCheck parameter to the UMA interface (/appliance/), which could let a remote malicious user obtain access to the root account.
Se presenta una Vulnerabilidad de Omisión de Autenticación en DELL SonicWALL Analyzer versión 7.0, Global Management System (GMS) versiones 4.1, 5.0, 5.1, 6.0 y 7.0; Universal Management Appliance (UMA) versiones 5.1, 6.0 y 7.0 y ViewPoint versiones 4.1, 5.0, 5.1 y 6.0 por medio del parámetro skipSessionCheck en la interfaz UMA (/appliance/), lo que podría permitir a un usuario malicioso remoto obtener acceso a la cuenta root.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2013-01-14 CVE Reserved
- 2013-01-18 First Exploit
- 2013-01-25 CVE Published
- 2024-08-06 CVE Updated
- 2024-10-28 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-287: Improper Authentication
CAPEC
References (10)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/57445 | Third Party Advisory | |
http://www.securitytracker.com/id/1028007 | Third Party Advisory | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/81367 | Third Party Advisory | |
https://fortiguard.com/encyclopedia/ips/35264/multiple-sonicwall-products-authentication-bypass-vulns | Third Party Advisory |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/24322 | 2013-01-24 | |
https://www.exploit-db.com/exploits/24204 | 2013-01-18 | |
http://www.exploit-db.com/exploits/24204 | 2024-08-06 | |
http://www.exploit-db.com/exploits/24322 | 2024-08-06 | |
https://packetstormsecurity.com/files/author/7547 | 2024-08-06 | |
https://seclists.org/fulldisclosure/2013/Jan/125 | 2024-08-06 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sonicwall Search vendor "Sonicwall" | Analyzer Search vendor "Sonicwall" for product "Analyzer" | 7.0 Search vendor "Sonicwall" for product "Analyzer" and version "7.0" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Global Management System Search vendor "Sonicwall" for product "Global Management System" | 4.1 Search vendor "Sonicwall" for product "Global Management System" and version "4.1" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Global Management System Search vendor "Sonicwall" for product "Global Management System" | 5.0 Search vendor "Sonicwall" for product "Global Management System" and version "5.0" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Global Management System Search vendor "Sonicwall" for product "Global Management System" | 5.1 Search vendor "Sonicwall" for product "Global Management System" and version "5.1" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Global Management System Search vendor "Sonicwall" for product "Global Management System" | 6.0 Search vendor "Sonicwall" for product "Global Management System" and version "6.0" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Global Management System Search vendor "Sonicwall" for product "Global Management System" | 7.0 Search vendor "Sonicwall" for product "Global Management System" and version "7.0" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Universal Management Appliance Search vendor "Sonicwall" for product "Universal Management Appliance" | 5.1 Search vendor "Sonicwall" for product "Universal Management Appliance" and version "5.1" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Universal Management Appliance Search vendor "Sonicwall" for product "Universal Management Appliance" | 6.0 Search vendor "Sonicwall" for product "Universal Management Appliance" and version "6.0" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Universal Management Appliance Search vendor "Sonicwall" for product "Universal Management Appliance" | 7.0 Search vendor "Sonicwall" for product "Universal Management Appliance" and version "7.0" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Viewpoint Search vendor "Sonicwall" for product "Viewpoint" | 4.1 Search vendor "Sonicwall" for product "Viewpoint" and version "4.1" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Viewpoint Search vendor "Sonicwall" for product "Viewpoint" | 5.0 Search vendor "Sonicwall" for product "Viewpoint" and version "5.0" | - |
Affected
| ||||||
Sonicwall Search vendor "Sonicwall" | Viewpoint Search vendor "Sonicwall" for product "Viewpoint" | 6.0 Search vendor "Sonicwall" for product "Viewpoint" and version "6.0" | - |
Affected
|