CVE-2021-20048: Buffer Overflow
A Stack-based buffer overflow in the SonicOS SessionID HTTP response header allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in code execution in the firewall. This vulnerability affected SonicOS Gen 5, Gen 6 and Gen 7 firmware versions.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-20048.
What is the severity of CVE-2021-20048?
The severity of CVE-2021-20048 is high with a CVSS score of 8.8.
Which SonicOS firmware versions are affected by CVE-2021-20048?
SonicOS Gen 5, Gen 6, and Gen 7 firmware versions are affected by CVE-2021-20048.
What is the impact of CVE-2021-20048?
CVE-2021-20048 allows a remote authenticated attacker to cause Denial of Service (DoS) and potentially results in code execution in the firewall.
Where can I find more information about CVE-2021-20048?
You can find more information about CVE-2021-20048 at the following link: [SonicWall PSIRT](https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0028).