Back

CVE-2013-1359

CRITICAL

An Authentication Bypass Vulnerability exists in DELL SonicWALL Analyzer 7.0, Global Management System (GMS) 4.1, 5.0, 5.1, 6.0, and 7.0; Universal Management Appliance (UMA) 5.1, 6.0, and 7.0 and ViewPoint 4.1, 5.0, 5.1, and 6.0 via the skipSessionCheck parameter to the UMA interface (/appliance/), which could let a remote malicious user obtain access to the root account.

Published: Feb 11, 2020 Modified: Jun 16, 2026
CWE-287

CVSS Metrics

CVSSv3
Attack Vector: NETWORK Attack Complexity: LOW Privileges Required: NONE User Interaction: NONE Scope: UNCHANGED Confidentiality Impact: HIGH Integrity Impact: HIGH Availability Impact: HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Affected Products (12)

Vendor Product Version
sonicwall analyzer 7.0
sonicwall global_management_system 4.1
sonicwall global_management_system 5.0
sonicwall global_management_system 5.1
sonicwall global_management_system 6.0
sonicwall global_management_system 7.0
sonicwall universal_management_appliance 5.1
sonicwall universal_management_appliance 6.0
sonicwall universal_management_appliance 7.0
sonicwall viewpoint 4.1
sonicwall viewpoint 5.0
sonicwall viewpoint 6.0

GitHub Security Advisory GHSA-6qrj-83cw-546c

An Authentication Bypass Vulnerability exists in DELL SonicWALL Analyzer 7.0, Global Management...

Risk Scores

CVSS Score 9.8 / 10
EPSS Score 89.40%

Top 0% most likely to be exploited

Threat Score 76 / 100

Data Sources

NVD EPSS GitHub