← back
CVE-2020-5132

CVE-2020-5132

EPSS 1.0%CWE-200
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 1.0%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
30 Sep 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
SonicWall SSL-VPN products and SonicWall firewall SSL-VPN feature misconfiguration leads to possible DNS flaw known as domain name collision vulnerability. When the users publicly display their organization’s internal domain names in the SSL-VPN authentication page, an attacker with knowledge of internal domain names can potentially take advantage of this vulnerability.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →