Vulnerabilities
Vulnerable Software
Sonicwall:  >> Sma 210 Firmware  Security Vulnerabilities
An improper access control vulnerability in SMA100 allows a remote unauthenticated attacker to bypass the path traversal checks and delete an arbitrary file potentially resulting in a reboot to factory default settings.
CVSS Score
9.1
EPSS Score
0.072
Published
2021-09-27
CVE-2021-20035
Known exploited
Improper neutralization of special elements in the SMA100 management interface allows a remote authenticated attacker to inject arbitrary commands as a 'nobody' user which potentially leads to DoS.
CVSS Score
6.5
EPSS Score
0.14
Published
2021-09-27
CVE-2021-20028
Known exploited
Improper neutralization of a SQL Command leading to SQL Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products, specifically the SRA appliances running all 8.x firmware and 9.0.0.9-26sv or earlier
CVSS Score
9.8
EPSS Score
0.867
Published
2021-08-04
CVE-2021-20016
Known exploited
A SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access username password and other session related information. This vulnerability impacts SMA100 build version 10.x.
CVSS Score
9.8
EPSS Score
0.804
Published
2021-02-04


Contact Us

Shodan ® - All rights reserved