CVE-2014-4976: SonicWall Scrutinizer

Medium severity, CVSS 5.5. EPSS: 2.7% chance of exploitation in the next 30 days.

Dell SonicWall Scrutinizer 11.0.1 allows remote authenticated users to change user passwords via the user ID in the savePrefs parameter in a change password request to cgi-bin/admin.cgi.

Affected products

Published 2014-07-16. Last modified 2026-06-17.