SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  ELOG Password Hash Disclosure 1

Category: WEB-ATTACKS      

ELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can recover a user's password hash by sending a crafted HTTP POST request.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-3993


Relevant Information