Showing 2 vulnerabilities on this page for SMA100 Appliances

Signals CISA KEV Ransomware Nuclei
SonicWall vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

SonicWall SMA100 Appliances OS Command Injection Vulnerability

Improper neutralization of special elements in the SMA100 SSL-VPN management interface allows a remote authenticated attacker with administrative privilege to inject arbitrary commands as a 'nobody' user, potentially leading to OS Command Injection Vulnerability.

CWE-78Dec 5, 2023
CVSS7.2v3.1EPSS74.9%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

SonicWall SMA100 Appliances OS Command Injection Vulnerability

Improper neutralization of special elements in the SMA100 management interface allows a remote authenticated attacker to inject arbitrary commands as a 'nobody' user which potentially leads to DoS.

CWE-78Sep 27, 2021
CVSS6.5v3.1EPSS4.18%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX