sonicwall

250 tracked vulnerabilities.

CVE-2021-20046 HIGH
SonicOS < 7.0.1-r146 - Authenticated Stack-based Buffer Overflow via HTTP Content-Length Header
Jan 10, 2022
CVSS 8.8
EPSS 0.01
CVE-2021-20050 HIGH
SonicWall SMA 100/200/210/400/410/500v Firmware < 10.0.0.0 - Unauthenticated Improper Access Control
Dec 23, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-20049 HIGH
SonicWall SMA100/SMA200/SMA210/SMA400/SMA410/SMA500v < 10.0.0.0 - Unauthenticated Username Enumeration
Dec 23, 2021
CVSS 7.5
EPSS 0.00
CVE-2021-45105 MEDIUM
Apache Log4j 2.0-alpha1-2.16.0 - Denial of Service via Thread Context Map Self-Referential Lookup
Dec 18, 2021
CVSS 5.9
EPSS 0.75
CVE-2021-45046 CRITICAL KEVNUCLEI
Apache Log4j < 2.12.2 - Remote Code Execution
Dec 14, 2021
CVSS 9.0
EPSS 0.94
CVE-2021-44228 CRITICAL KEVNUCLEI
Log4Shell HTTP Header Injection
Dec 10, 2021
CVSS 10.0
EPSS 0.94
CVE-2021-20047 HIGH
SonicWall Global VPN Client < 4.10.6 - DLL Search Order Hijacking
Dec 08, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-20045 CRITICAL
SonicWall SMA 200/210/400/410/500v Firmware - Unauthenticated Remote Code Execution via sonicfiles RAC_COPY_TO Method
Dec 08, 2021
CVSS 9.8
EPSS 0.04
CVE-2021-20044 HIGH
SonicWall SMA100 - Authenticated Remote Command Injection
Dec 08, 2021
CVSS 8.8
EPSS 0.06
CVE-2021-20043 HIGH
SonicWall SMA 200 210 400 410 500v Firmware - Authenticated Heap-based Buffer Overflow in getBookmarks Method
Dec 08, 2021
CVSS 8.8
EPSS 0.05
CVE-2021-20042 CRITICAL
SonicWall SMA 100 - Unauthenticated Proxy Bypass
Dec 08, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-20041 HIGH
SonicWall SMA 200/210/400/410/500v Firmware - Unauthenticated Denial of Service via Crafted HTTP Requests
Dec 08, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-20040 HIGH
SonicWall SMA 200/210/400/410/500v Firmware - Unauthenticated Path Traversal via Upload Function
Dec 08, 2021
CVSS 7.5
EPSS 0.09
CVE-2021-20039 HIGH
SonicWall SMA 200/210/400/410/500v Firmware - Authenticated OS Command Injection via /cgi-bin/viewcert
Dec 08, 2021
CVSS 8.8
EPSS 0.82
CVE-2021-20038 CRITICAL KEVNUCLEI
SonicWall SMA 100 Series Firmware <= 10.2.1.2-24sv - Unauthenticated Stack-based Buffer Overflow
Dec 08, 2021
CVSS 9.8
EPSS 0.94
CVE-2021-20031 MEDIUM NUCLEI
SonicOS < 7.0.1-r1262 - Host Header Redirection
Oct 12, 2021
CVSS 6.1
EPSS 0.36
CVE-2021-20035 MEDIUM KEV
SonicWall SMA 200/210/400/410/500v < 9.0.0.11-31sv - Authenticated OS Command Injection
Sep 27, 2021
CVSS 6.5
EPSS 0.04
CVE-2021-20034 CRITICAL
SonicWall SMA 200/210/400/410/500v < 9.0.0.10-28sv - Unauthenticated Arbitrary File Deletion via Path Traversal Bypass
Sep 27, 2021
CVSS 9.1
EPSS 0.06
CVE-2021-20037 HIGH
SonicWall Global VPN Client < 4.10.5 - Privilege Escalation via Incorrect Default File Permissions
Sep 21, 2021
CVSS 7.8
EPSS 0.00
CVE-2021-20032 CRITICAL
SonicWall Analytics < 2.5.2518 - Remote Code Execution via JDWP Interface Misconfiguration
Aug 10, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-20028 CRITICAL KEV
SonicWall SRA and SMA Firmware 8.x-9.0.0.9-26sv - SQL Injection
Aug 04, 2021
CVSS 9.8
EPSS 0.81
CVE-2021-33909 HIGH
Linux Kernel 3.16-5.13.x < 5.13.4 - Integer Overflow and Out-of-bounds Write in seq_file
Jul 20, 2021
CVSS 7.8
EPSS 0.02
CVE-2021-20024 HIGH
SonicWall Switch < 1.0.0.5-16 - Out-of-Bounds Read via LLDP Protocol
Jul 09, 2021
CVSS 8.1
EPSS 0.00
CVE-2021-20019 HIGH
SonicOS 7.0.0-7.0.0.376 - Memory Leak via HTTP Server Response
Jun 23, 2021
CVSS 7.5
EPSS 0.01
CVE-2021-20027 HIGH
SonicOS < 7.0.1-r1262 - Denial of Service via Crafted Request
Jun 14, 2021
CVSS 7.5
EPSS 0.00