Template / PR Information

Template Validation

I’ve validated this template locally?

  • YES
  • NO

Additional Details (leave it blank if not applicable)

Shodan Query: "SonicWall Email Security"

Template Testing Results:

[CVE-2021-20021] [http] [critical] http://localhost:8888/createou?data=test123
[CVE-2021-20021] [http] [critical] http://localhost:8888/createou [POST]
Scan completed in 5.228255ms. 5 matches found.

HTTP Response Snippet:

GET /createou?data=test123 HTTP/1.1
→ HTTP/1.0 400 Bad Request
→ Error in parsing request - SonicWall Email Security

POST /createou HTTP/1.1
→ HTTP/1.0 400 Bad Request  
→ Error in parsing request

Screenshot from 2025-06-28 23-32-10

Screenshot from 2025-06-28 23-32-59

Mock Server Used for Testing:

Vulnerability Impact:

  • CVSS Score: 9.8 (Critical)
  • KEV Status: Active exploitation in the wild
  • Allows creation of administrative accounts without authentication

Additional References:

Closes #12461

/claim #12461

Claim

Total prize pool $50
Total paid $0
Status Pending
Submitted June 28, 2025
Last updated June 28, 2025

Contributors

RI

Rishi Mondal

@MAVRICK-1

100%

Sponsors

PR

ProjectDiscovery

@projectdiscovery

$50