An unauthenticated remote attacker can use SMA 100 as an unintended proxy or intermediary undetectable proxy to bypass firewall rules. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances.
References
| Link | Resource |
|---|---|
| https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0026 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
Configuration 4 (hide)
| AND |
|
Configuration 5 (hide)
| AND |
|
Information
Published : 2021-12-08 10:15
Updated : 2021-12-10 21:57
NVD link : CVE-2021-20042
Mitre link : CVE-2021-20042
JSON object : View
Products Affected
sonicwall
- sma_210_firmware
- sma_400_firmware
- sma_500v_firmware
- sma_410_firmware
- sma_500v
- sma_210
- sma_200_firmware
- sma_400
- sma_200
- sma_410
CWE
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
