Description
An unauthenticated and remote adversary can consume all of the device's CPU due to crafted HTTP requests sent to SMA100 /fileshare/sonicfiles/sonicfiles resulting in a loop with unreachable exit condition. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances.
Published: 2021-12-08
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-7504 An unauthenticated and remote adversary can consume all of the device's CPU due to crafted HTTP requests sent to SMA100 /fileshare/sonicfiles/sonicfiles resulting in a loop with unreachable exit condition. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances.
History

No history.

Subscriptions

Sonicwall Sma 200 Sma 200 Firmware Sma 210 Sma 210 Firmware Sma 400 Sma 400 Firmware Sma 410 Sma 410 Firmware Sma 500v Sma 500v Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: sonicwall

Published:

Updated: 2024-08-03T17:30:07.021Z

Reserved: 2020-12-17T00:00:00.000Z

Link: CVE-2021-20041

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-12-08T10:15:08.003

Modified: 2024-11-21T05:45:50.287

Link: CVE-2021-20041

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses