SonicWall SSL-VPN products and SonicWall firewall SSL-VPN feature misconfiguration leads to possible DNS flaw known as domain name collision vulnerability. When the users publicly display their organization’s internal domain names in the SSL-VPN authentication page, an attacker with knowledge of internal domain names can potentially take advantage of this vulnerability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: sonicwall
Published: 2020-09-30T05:25:11
Updated: 2024-08-04T08:22:08.680Z
Reserved: 2019-12-31T00:00:00
Link: CVE-2020-5132
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-09-30T06:15:12.953
Modified: 2020-10-07T14:40:52.540
Link: CVE-2020-5132
Redhat
No data.