Back to search
CVE-2021-20017
Published: Mar 13, 2021
Modified: Aug 3, 2024
PUBLISHED
Description
A post-authenticated command injection vulnerability in SonicWall SMA100 allows an authenticated attacker to execute OS commands as a 'nobody' user. This vulnerability impacts SMA100 version 10.2.0.5 and earlier.
| Vendor | Product | Versions |
|---|---|---|
SonicWall | SMA100 | affected 10.2.0.5 and earlier |
Weaknesses (CWE)
References
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0004
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now