CyberSec.Space Logo
Back to CVE Browser

CVE-2021-20021

Known Exploited (CISA KEV)CRITICAL
9.8
CVSS Severity Score
EPSS Score48.8280%
EPSS Percentile86.73th
PublishedApr 9, 2021
Last ModifiedNov 10, 2025

Vulnerability Description

A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host.

Affected Platforms (CPE)

πŸ“¦
Sonicwall

Email Security

< 10.0.9.6103
πŸ’»
Sonicwall

Email Security Appliance 9000 Firmware

< 10.0.9.6105
πŸ’»
Sonicwall

Email Security Appliance 3300 Firmware

< 10.0.9.6105
πŸ’»
Sonicwall

Email Security Appliance 4300 Firmware

< 10.0.9.6105
πŸ’»
Sonicwall

Email Security Appliance 8300 Firmware

< 10.0.9.6105
πŸ’»
Sonicwall

Email Security Appliance 5000 Firmware

< 10.0.9.6105
πŸ’»
Sonicwall

Email Security Appliance 7000 Firmware

< 10.0.9.6105
πŸ’»
Sonicwall

Email Security Appliance 5050 Firmware

< 10.0.9.6105
πŸ’»
Sonicwall

Email Security Appliance 7050 Firmware

< 10.0.9.6105
πŸ“¦
Sonicwall

Email Security Virtual Appliance

< 10.0.9.6105
πŸ“¦
Sonicwall

Hosted Email Security

< 10.0.9.6103

References & Advisories

Related Vulnerabilities