{"id":1065,"date":"2016-07-21T15:57:47","date_gmt":"2016-07-21T13:57:47","guid":{"rendered":"http:\/\/borncity.com\/win\/?p=1065"},"modified":"2020-01-17T17:27:29","modified_gmt":"2020-01-17T16:27:29","slug":"vulnerabilities-and-backdoors-in-dells-sonicwall","status":"publish","type":"post","link":"https:\/\/borncity.com\/win\/2016\/07\/21\/vulnerabilities-and-backdoors-in-dells-sonicwall\/","title":{"rendered":"Vulnerabilities and Backdoors in Dell&rsquo;s SonicWALL"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline\" src=\"http:\/\/www.borncity.com\/blog\/wp-content\/uploads\/2015\/01\/Schutz.jpg\" width=\"40\" align=\"left\" height=\"47\">Some bad news for users of Dell's SonicWALL security solution. Security researchers has identified six Vulnerabilities including a hidden 'Backdoor' in Dell's SonicWALL Global Management System (GMS), Version 8.1 (Build: 8110.1197). <\/p>\n<p><!--more--><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" alt=\"\" src=\"https:\/\/ssl-vg03.met.vgwort.de\/na\/fccd432201d2436289da2c72a83b46f4\" width=\"1\" height=\"1\"><\/p>\n<h3>Dell SonicWALL security<\/h3>\n<p>Dell offers <a href=\"https:\/\/www.sonicwall.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">SonicWALL security<\/a> as \"Integrate hardware, software and services for best-of-breed security\". The solutions offered should secure organization's systems, users and data with a deep level of protection that won't compromise network performance. SonicWALL comes as wired and wireless security solutions. Security reserachers from <a href=\"https:\/\/web.archive.org\/web\/20180521155448\/https:\/\/www.digitaldefense.com\/ddi-six-discoveries\/\" target=\"_blank\" rel=\"noopener noreferrer\">digitaldefense.com<\/a> has discovered six critical vulnerabilities in Dell SonicWALL Global Management System (GMS), Version 8.1 (Build: 8110.1197). <\/p>\n<p><img decoding=\"async\" src=\"https:\/\/web.archive.org\/web\/20170110214437\/https:\/\/www.sonicwall.com\/images\/product-line\/sonicwall\/products\/management-reporting-box-shots-460.png\"><br \/>(SonicWALL Global Management System, Quelle: Dell)<\/p>\n<p>SonicWALL GMS (Global Management System) is a central management, report and monitoring tool for all SonicWALL solutionen like Firewall, Email Security and Secure Remote Access. <\/p>\n<p>Some vulnerabilities allows unauthorized root command injection via <em>set_time_config <\/em>and other methods. There are also hidden default account(s) with easily guessable passwords. Such a hidden account can be used, according to <a href=\"https:\/\/web.archive.org\/web\/20180521155448\/https:\/\/www.digitaldefense.com\/ddi-six-discoveries\/\" target=\"_blank\" rel=\"noopener noreferrer\">digitaldefense.com<\/a>, to add non administrative users via the CLI Client that can be downloaded from the Console interface of the GMS web application. The non-administrative user can then log into the web interfaces and change the password for the admin user, elevating their privilege to that of the admin user upon logging out and back in as the admin user with the new password. This would grant the attacker full control of the GMS interface and all attached SonicWALL appliances. According to <a href=\"http:\/\/www.zdnet.com\/article\/hidden-backdoor-account-found-in-dell-network-security-software\/\" target=\"_blank\" rel=\"noopener noreferrer\">ZDNet.com<\/a> Dell has confirmed the vulnerabilities in GMS version 8.0\/8.1. <\/p>\n<blockquote class=\"twitter-tweet\" data-lang=\"de\">\n<p lang=\"en\" dir=\"ltr\"><a href=\"https:\/\/twitter.com\/etguenni\">@etguenni<\/a> Dell SonicWALL GMS hotfix is available; update<br \/>w\/ this version: <a href=\"https:\/\/t.co\/YztjfKEkTH\">https:\/\/t.co\/YztjfKEkTH<\/a>. See more: <a href=\"https:\/\/t.co\/bWDDrJXoBd\">https:\/\/t.co\/bWDDrJXoBd<\/a>.<\/p>\n<p>\u2014 SonicWALL Cares (@SonicWALLCares) <a href=\"https:\/\/twitter.com\/SonicWALLCares\/status\/755924125663854592\">21. Juli 2016<\/a><\/p><\/blockquote>\n<p><script async src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script>  <\/p>\n<p>According to this <a href=\"https:\/\/twitter.com\/etguenni\/status\/755876338301603840\" target=\"_blank\" rel=\"noopener noreferrer\">tweet<\/a> from @SonicWALLCares (as an answer of my German blog post this night), a Dell SonicWALL GMS hotfix is available. Dell has also released a Security Advisory. The updates shall be available for download <a href=\"https:\/\/www.mysonicwall.com\/login.aspx\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Some bad news for users of Dell's SonicWALL security solution. Security researchers has identified six Vulnerabilities including a hidden 'Backdoor' in Dell's SonicWALL Global Management System (GMS), Version 8.1 (Build: 8110.1197).<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[71],"tags":[176,69,86],"class_list":["post-1065","post","type-post","status-publish","format-standard","hentry","category-computer","tag-dell","tag-security","tag-vulnerability"],"_links":{"self":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/1065","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/comments?post=1065"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/1065\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/media?parent=1065"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/categories?post=1065"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/tags?post=1065"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}