Vulnerability Description
An unauthenticated remote attacker can use SMA 100 as an unintended proxy or intermediary undetectable proxy to bypass firewall rules. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sonicwall | Sma 200 Firmware | 9.0.0.11-31sv |
| Sonicwall | Sma 200 | - |
| Sonicwall | Sma 210 Firmware | 9.0.0.11-31sv |
| Sonicwall | Sma 210 | - |
| Sonicwall | Sma 410 Firmware | 9.0.0.11-31sv |
| Sonicwall | Sma 410 | - |
| Sonicwall | Sma 400 Firmware | 9.0.0.11-31sv |
| Sonicwall | Sma 400 | - |
| Sonicwall | Sma 500V Firmware | 9.0.0.11-31sv |
| Sonicwall | Sma 500V | - |
Related Weaknesses (CWE)
References
- https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0026Vendor Advisory
- https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0026Vendor Advisory
FAQ
What is CVE-2021-20042?
CVE-2021-20042 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An unauthenticated remote attacker can use SMA 100 as an unintended proxy or intermediary undetectable proxy to bypass firewall rules. This vulnerability affected SMA 200, 210, 400, 410 and 500v appli...
How severe is CVE-2021-20042?
CVE-2021-20042 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-20042?
Check the references section above for vendor advisories and patch information. Affected products include: Sonicwall Sma 200 Firmware, Sonicwall Sma 200, Sonicwall Sma 210 Firmware, Sonicwall Sma 210, Sonicwall Sma 410 Firmware.