CVE Database
/

CVE-2021-20035

Back to search

CVE-2021-20035

Published: Sep 27, 2021

Modified: Oct 21, 2025

PUBLISHED

Description

Improper neutralization of special elements in the SMA100 management interface allows a remote authenticated attacker to inject arbitrary commands as a 'nobody' user which potentially leads to DoS.

VendorProductVersions

SonicWall

SMA100

affected
9.0.0.10-28sv and earlier
affected
10.2.0.7-34sv and earlier
affected
10.2.1.0-17sv and earlier

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now