CVE-2022-2324
EUVD-2022-3459329.07.2022, 21:15
Improperly Implemented Security Check vulnerability in the SonicWall Hosted Email Security leads to bypass of Capture ATP security service in the appliance. This vulnerability impacts 10.0.17.7319 and earlier versionsEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sonicwall | hosted_email_security | 𝑥 ≤ 10.0.17.7319 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-358 - Improperly Implemented Security Check for StandardThe software does not implement or incorrectly implements one or more security-relevant checks as specified by the design of a standardized algorithm, protocol, or technique.
- CWE-290 - Authentication Bypass by SpoofingThis attack-focused weakness is caused by improperly implemented authentication schemes that are subject to spoofing attacks.