CyberSec.Space Logo
返回 CVE 浏览器

CVE-2021-20035

🔥 Known Exploited (CISA KEV)MEDIUM
6.5
CVSS Severity Score
EPSS Score96.6560%
EPSS Percentile89.22th
Published2021-09-27
Last Modified2025-10-31
Data SourcesNVDCISA KEVFIRST.org EPSS

Vulnerability Description

Improper neutralization of special elements in the SMA100 management interface allows a remote authenticated attacker to inject arbitrary commands as a 'nobody' user which potentially leads to DoS.

Affected Platforms (CPE)

💻
Sonicwall

Sma 200 Firmware

< 9.0.0.11-31sv>= 10.2.0.0 and < 10.2.0.8-37sv>= 10.2.1.0 and < 10.2.1.1-19sv
💻
Sonicwall

Sma 210 Firmware

< 9.0.0.11-31sv>= 10.2.0.0 and < 10.2.0.8-37sv>= 10.2.1.0 and < 10.2.1.1-19sv
💻
Sonicwall

Sma 400 Firmware

< 9.0.0.11-31sv>= 10.2.0.0 and < 10.2.0.8-37sv>= 10.2.1.0 and < 10.2.1.1-19sv
💻
Sonicwall

Sma 410 Firmware

< 9.0.0.11-31sv>= 10.2.0.0 and < 10.2.0.8-37sv>= 10.2.1.0 and < 10.2.1.1-19sv

References & Advisories

相關資安分析文章

相关漏洞威胁