CVE-2023-0655: Medium severity sonicwall email security vulnerability
Published Feb 14, 2023
·Updated
SonicWall Email Security contains a vulnerability that could permit a remote unauthenticated attacker access to an error page that includes sensitive information about users email addresses.
Affected Software
1 affected component
SonicWall Email Security<=10.0.19.7431
Event History
Feb 14, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2023-0655?
CVE-2023-0655 is a vulnerability found in SonicWall Email Security that allows a remote unauthenticated attacker to access an error page containing sensitive user email addresses.
2
How severe is the CVE-2023-0655 vulnerability?
CVE-2023-0655 has a severity rating of medium with a CVSS score of 5.3.
3
Which versions of SonicWall Email Security are affected by CVE-2023-0655?
SonicWall Email Security versions up to and including 10.0.19.7431 are affected by CVE-2023-0655.
4
Is authentication required to exploit the CVE-2023-0655 vulnerability?
No, authentication is not required to exploit the CVE-2023-0655 vulnerability.
5
Are there any patches or fixes available for CVE-2023-0655?
Yes, SonicWall has provided patches for CVE-2023-0655. Please refer to the SonicWall website for more information.