Critical · published April 9, 2021
CVSS calls it critical at 9.8. It is confirmed in active exploitation. It sits in the 99.7th percentile for exploit probability.
🚨 An attacker only needs to send a single crafted HTTP request to create an administrative account on SonicWall Email Security! 🔥 Think of it like a thief slipping a forged ID to a security guard — they can walk right in as if they belong, potentially wreaking havoc without anyone noticing! With this vulnerability, hackers can gain full control over your email security system. This means they could access sensitive data, manipulate email flows, or even launch further attacks against your organization. The consequences could be absolutely devastating!
Think of it like a thief slipping a forged ID to a security guard — they can walk right in as if they belong, potentially wreaking havoc without anyone noticing! This vulnerability allows attackers to exploit SonicWall Email Security by sending an unverified HTTP request to create new administrative accounts, bypassing standard authentication checks altogether.
With this vulnerability, hackers can gain full control over your email security system. This means they could access sensitive data, manipulate email flows, or even launch further attacks against your organization. The consequences could be absolutely devastating! Immediately update SonicWall Email Security to version 10.0.9.10 or later to patch this hole. Also, review account activity logs for any unauthorized access and implement stronger HTTP request validation as an additional precaution. You've got this! Take action now and keep your systems secure! 🛡️
| Product | Versions | Fixed in |
|---|---|---|
| sonicwall/email_security | < 10.0.9.6103 | 10.0.9.6103 |
| sonicwall/email_security_appliance_9000_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_3300_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_4300_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_8300_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_5000_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_7000_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_5050_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_appliance_7050_firmware | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/email_security_virtual_appliance | < 10.0.9.6105 | 10.0.9.6105 |
| sonicwall/hosted_email_security | < 10.0.9.6103 | 10.0.9.6103 |