CRITICAL

CVE-2021-20038

Sonicwall Sma 200 Firmware 2021-12-08 CVSS v3.1
CVSS
9.8
KEV

Description

A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables allows a remote unauthenticated attacker to potentially execute code as a 'nobody' user in the appliance. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances firmware 10.2.0.8-37sv, 10.2.1.1-19sv, 10.2.1.2-24sv and earlier versions.

Summary dbcve.org

A stack-based buffer overflow exists in the mod_cgi module of the Apache httpd server bundled with SonicWall SMA100 series appliances, triggered via crafted environment variables. A remote unauthenticated attacker can exploit this to potentially execute arbitrary code on the appliance under the unprivileged 'nobody' user account. The flaw affects SMA 200, 210, 400, 410, and 500v devices running the listed firmware versions and earlier.

Mitigation

Apply the vendor-issued firmware patch for the affected SMA100 appliance models; restrict network exposure of the management and CGI services and monitor for anomalous activity until patching is completed.

Proof of Concept

Weakness (CWE)

CWE-121 Stack-based Buffer Overflow
CWE-787 Out-of-bounds Write

EPSS Score

99.91%
Probability of exploitation in next 30 days
100th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE