Known Vulnerabilities for Sma 500v Firmware by Sonicwall
Listed below are 10 of the newest known vulnerabilities associated with "Sma 500v Firmware" by "Sonicwall".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-22279 | ** UNSUPPORTED WHEN ASSIGNED ** A post-authentication arbitrary file read vulnerability impacting end-of-life Secure Remote A... | 4.9 - MEDIUM | 2022-04-13 | 2023-11-07 |
| CVE-2022-22273 | ** UNSUPPORTED WHEN ASSIGNED ** Improper neutralization of Special Elements leading to OS Command Injection vulnerability imp... | 9.8 - CRITICAL | 2022-03-17 | 2023-11-07 |
| CVE-2021-20044 | A post-authentication remote command injection vulnerability in SonicWall SMA100 allows a remote authenticated attacker to ex... | 8.8 - HIGH | 2021-12-08 | 2021-12-10 |
| CVE-2021-20043 | A Heap-based buffer overflow vulnerability in SonicWall SMA100 getBookmarks method allows a remote authenticated attacker to ... | 8.8 - HIGH | 2021-12-08 | 2021-12-10 |
| CVE-2021-20042 | An unauthenticated remote attacker can use SMA 100 as an unintended proxy or intermediary undetectable proxy to bypass firewa... | 9.8 - CRITICAL | 2021-12-08 | 2023-06-26 |
| CVE-2021-20041 | An unauthenticated and remote adversary can consume all of the device's CPU due to crafted HTTP requests sent to SMA100 /file... | 7.5 - HIGH | 2021-12-08 | 2021-12-10 |
| CVE-2021-20040 | A relative path traversal vulnerability in the SMA100 upload funtion allows a remote unauthenticated attacker to upload craft... | 7.5 - HIGH | 2021-12-08 | 2021-12-10 |
| CVE-2021-20039 | Improper neutralization of special elements in the SMA100 management interface '/cgi-bin/viewcert' POST http method allows a ... | 8.8 - HIGH | 2021-12-08 | 2022-04-01 |
| CVE-2021-20038 | A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables allows a rem... | 9.8 - CRITICAL | 2021-12-08 | 2022-05-13 |
| CVE-2021-20028 | ** UNSUPPORTED WHEN ASSIGNED ** Improper neutralization of a SQL Command leading to SQL Injection vulnerability impacting end... | 9.8 - CRITICAL | 2021-08-04 | 2023-11-07 |