CVE-2021-20023: SonicWall Email Security Path Traversal Vulnerability
SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to read an arbitrary file on the remote host.
Other sources
SonicWall Email Security contains a path traversal vulnerability that allows a post-authenticated attacker to read files on the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20022 to achieve privilege escalation.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-20023?
CVE-2021-20023 is a path traversal vulnerability in SonicWall Email Security that allows an authenticated attacker to read files on the remote host.
How severe is CVE-2021-20023?
CVE-2021-20023 has a severity rating of 4.9 out of 10, which is considered medium.
Who is affected by CVE-2021-20023?
SonicWall Email Security versions up to 10.0.9.6173, SonicWall Email Security Virtual Appliance, Sonicwall Email Security for Windows, and Sonicwall Hosted Email Security versions up to 10.0.9.6173 are affected by CVE-2021-20023.
How can an attacker exploit CVE-2021-20023?
An attacker with post-authentication can exploit CVE-2021-20023 to read files on the remote host, especially when combined with CVE-2021-20021 and CVE-2021-20022 for privilege escalation.
Is there a fix for CVE-2021-20023?
To fix CVE-2021-20023, users should update to SonicWall Email Security version 10.0.9.6173 or higher.