peter bassill · operator
$ cve CVE-2021-20038 JSON

CVE-2021-20038 KEV

9.8
CRITICAL · CVSS 3.1 · EPSS 99.9% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2022-02-11.

Description

A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables allows a remote unauthenticated attacker to potentially execute code as a 'nobody' user in the appliance. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances firmware 10.2.0.8-37sv, 10.2.1.1-19sv, 10.2.1.2-24sv and earlier versions.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS99.91% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-121
On CISA KEVyes — remediate by 2022-02-11
Public exploitnone known
Published2021-12-08
Last modified2026-06-17

CISA KEV

NameSonicWall SMA 100 Appliances Stack-Based Buffer Overflow Vulnerability
Added2022-01-28
Due2022-02-11
Vendor / productSonicWall / SMA 100 Appliances
Ransomware useknown

Affected (10)

VendorProduct
sonicwallsma 200
sonicwallsma 200 firmware
sonicwallsma 210
sonicwallsma 210 firmware
sonicwallsma 400
sonicwallsma 400 firmware
sonicwallsma 410
sonicwallsma 410 firmware
sonicwallsma 500v
sonicwallsma 500v firmware

References

→ the Explorer  ·  watch your stack  ·  NVD