CVE-2021-20038: SonicWall SMA 100 Appliances Stack-Based Buffer Overflow Vulnerability
A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's modcgi module environment variables allows a remote unauthenticated attacker to potentially execute code as a 'nobody' user in the appliance. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances firmware 10.2.0.8-37sv, 10.2.1.1-19sv, 10.2.1.2-24sv and earlier versions.
Other sources
SonicWall SMA 100 devies are vulnerable to an unauthenticated stack-based buffer overflow vulnerability where exploitation can result in code execution.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for the SonicWall SMA 100 Appliances stack-based buffer overflow vulnerability?
The vulnerability ID for the SonicWall SMA 100 Appliances stack-based buffer overflow vulnerability is CVE-2021-20038.
What is the severity of CVE-2021-20038?
The severity of CVE-2021-20038 is critical with a CVSS score of 9.8.
Which SonicWall SMA 100 Appliances firmware versions are affected by CVE-2021-20038?
SonicWall SMA 200, 210, 400, 410, and 500v appliances firmware versions 10.2.0.8-37sv, 10.2.1.1-19sv, and 10.2.1.2-24sv are affected by CVE-2021-20038.
How can an attacker exploit CVE-2021-20038?
A remote unauthenticated attacker can exploit CVE-2021-20038 by exploiting a stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables, potentially executing code as a 'nobody' user on the affected appliance.
Are SonicWall SMA 200, 210, 400, 410, and 500v appliances vulnerable to CVE-2021-20038?
Yes, SonicWall SMA 200, 210, 400, 410, and 500v appliances are vulnerable to CVE-2021-20038 if they are running the affected firmware versions.