60
CVE-2021-20042
—CVSS 3.1
9.8 critical
EPSS
3%p84
Published
()
Modified
Description
An unauthenticated remote attacker can use SMA 100 as an unintended proxy or intermediary undetectable proxy to bypass firewall rules. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances.
- Vendors
- sonicwall
- Products
- sma 200 firmware, sma 210 firmware, sma 410 firmware, sma 400 firmware, sma 500v firmware
- Weakness
- CWE-441
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H