9.8

CVE-2021-20016

Warnung
A SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access username password and other session related information. This vulnerability impacts SMA100 build version 10.x.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Sonicwall ≫ Sma 100 Firmware Version >= 10.0.0.0 < 10.2.0.5-d-29sv
   Sonicwall ≫ Sma 100 Version -
Sonicwall ≫ Sma 200 Firmware Version -
   Sonicwall ≫ Sma 200 Version -
Sonicwall ≫ Sma 210 Firmware Version -
   Sonicwall ≫ Sma 210 Version -
Sonicwall ≫ Sma 400 Firmware Version -
   Sonicwall ≫ Sma 400 Version -
Sonicwall ≫ Sma 410 Firmware Version -
   Sonicwall ≫ Sma 410 Version -
Sonicwall ≫ Sma 500v Version -

03.11.2021: CISA Known Exploited Vulnerabilities (KEV) Catalog

SonicWall SSLVPN SMA100 SQL Injection Vulnerability

Schwachstelle

SonicWall SSLVPN SMA100 contains a SQL injection vulnerability that allows remote exploitation for credential access by an unauthenticated attacker.

Beschreibung

Apply updates per vendor instructions.

Erforderliche Maßnahmen
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 36.95% 0.984
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CISA-ADP 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data.

https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0001
Vendor Advisory
Mitigation
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-20016
US Government Resource