PT-2021-5651 · Sonicwall+1 · Sonicwall Sma410+6
Jake Baines
·
Published
2021-12-07
·
Updated
2025-10-31
·
CVE-2021-20038
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
SonicWall SMA 100 Appliances version 10.2.0.8-37sv
SonicWall SMA 100 Appliances version 10.2.1.1-19sv
SonicWall SMA 100 Appliances version 10.2.1.2-24sv
SonicWall SMA 200, 210, 400, 410 and 500v appliances firmware 10.2.0.8-37sv, 10.2.1.1-19sv, 10.2.1.2-24sv and earlier versions
Description
A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod cgi module environment variables allows a remote unauthenticated attacker to potentially execute code as a 'nobody' user in the appliance.
Recommendations
For SonicWall SMA 100 Appliances version 10.2.0.8-37sv, update to a version later than 10.2.0.8-37sv.
For SonicWall SMA 100 Appliances version 10.2.1.1-19sv, update to a version later than 10.2.1.1-19sv.
For SonicWall SMA 100 Appliances version 10.2.1.2-24sv, update to a version later than 10.2.1.2-24sv.
For SonicWall SMA 200, 210, 400, 410 and 500v appliances, update to a firmware version later than 10.2.1.2-24sv.
As a temporary workaround, consider disabling the mod cgi module in the Apache httpd server until a patch is available.
Exploit
Fix
Stack Overflow
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Apache Http Server
Sonicwall Sma100 Appliance
Sonicwall Sma200
Sonicwall Sma210
Sonicwall Sma400
Sonicwall Sma410
Sonicwall Sma500V