cgi-bin/admin.cgi in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.0 does not require token authentication, which allows remote attackers to add administrative accounts via a userprefs action.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-10-03T16:15:37

Updated: 2022-10-03T16:15:37

Reserved: 2022-10-03T00:00:00


Link: CVE-2012-2626

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2012-07-31T10:45:41.357

Modified: 2018-03-08T19:03:21.467


Link: CVE-2012-2626

JSON object: View

cve-icon Redhat Information

No data.

CWE