CVE ID
CVE-2021-20038
Vulnerability Name
SonicWall SMA 100 Appliances Stack-Based Buffer Overflow Vulnerability
- Project: SonicWall
- Product: SMA 100 Appliances
Date
- Date Added: 2022-01-28
- Due Date: 2022-02-11
Description
SonicWall SMA 100 devies are vulnerable to an unauthenticated stack-based buffer overflow vulnerability where exploitation can result in code execution.
Known To Be Used in Ransomware Campaigns?
Known
Action
Apply updates per vendor instructions.
Additional Notes
https://nvd.nist.gov/vuln/detail/CVE-2021-20038
Related Security News
- SonicWall urges admins to patch critical RCE flaw in SMA 100 devices
- SonicWall SMA devices hacked with OVERSTEP rootkit tied to ransomware
- UNC6148 Backdoors Fully-Patched SonicWall SMA 100 Series Devices with OVERSTEP Rootkit
- RansomHub Becomes 2024's Top Ransomware Group, Hitting 600+ Organizations Globally