A vulnerability in SonicWall SMA100 password change API allows a remote unauthenticated attacker to perform SMA100 username enumeration based on the server responses. This vulnerability impacts 10.2.1.2-24sv, 10.2.0.8-37sv and earlier 10.x versions.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: sonicwall

Published: 2021-12-23T01:20:09

Updated: 2024-08-03T17:30:07.418Z

Reserved: 2020-12-17T00:00:00

Link: CVE-2021-20049

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-12-23T02:15:06.583

Modified: 2022-07-08T18:20:05.127

Link: CVE-2021-20049

cve-icon Redhat

No data.