An unauthenticated and remote adversary can consume all of the device's CPU due to crafted HTTP requests sent to SMA100 /fileshare/sonicfiles/sonicfiles resulting in a loop with unreachable exit condition. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-7504 An unauthenticated and remote adversary can consume all of the device's CPU due to crafted HTTP requests sent to SMA100 /fileshare/sonicfiles/sonicfiles resulting in a loop with unreachable exit condition. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: sonicwall

Published:

Updated: 2024-08-03T17:30:07.021Z

Reserved: 2020-12-17T00:00:00

Link: CVE-2021-20041

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-12-08T10:15:08.003

Modified: 2024-11-21T05:45:50.287

Link: CVE-2021-20041

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.