CVE-2021-20019

HIGH

SonicOS 7.0.0-7.0.0.376 - Memory Leak via HTTP Server Response

Title source: llm
STIX 2.1

Description

A vulnerability in SonicOS where the HTTP server response leaks partial memory by sending a crafted HTTP request, this can potentially lead to an internal sensitive data disclosure vulnerability.

References (1)

Core 1
Core References

Scores

CVSS v3 7.5
EPSS 0.0104
EPSS Percentile 77.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-119 CWE-200
Status published
Products (5)
sonicwall/sonicos 6.0.5.3-94o
sonicwall/sonicos 6.5.1.12-3n
sonicwall/sonicos 6.5.4.7-83n
sonicwall/sonicos 7.0.0 - 7.0.0.376
sonicwall/sonicosv 6.5.4.4-44v-21-955
Published Jun 23, 2021
Tracked Since Feb 18, 2026