THREATOPS
THREAT OPSThreat News › [NVD] CVE-2021-20016 (CRITICAL 9.8) — A SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access username password and other session related information. This vulnerability impacts SMA100 build version 10.x.

[NVD] CVE-2021-20016 (CRITICAL 9.8) — A SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access username password and other session related information. This vulnerability impacts SMA100 build version 10.x.

lownvdPublished 2021-02-04

CVE-2021-20016 CVSS: 9.8 CRITICAL Published: 2021-02-04T06:15:13.817

A SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access username password and other session related information. This vulnerability impacts SMA100 build version 10.x.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2021-20016