← Back

CVE-2021-20031

Published: Oct 12, 2021Modified: Nov 21, 2024

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

A Host Header Redirection vulnerability in SonicOS potentially allows a remote attacker to redirect firewall management users to arbitrary web domains.

Affected (7)

Products: Sonicwall: Sonicos
1 product
Sonicos
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 7.0.1-r1262
Configuration B
1 vulnerable · 12 platform
Vulnerable SoftwareAffected Versions
Up to 7.0.1-r1283
Running on/withPlatform Versions
Sonicwall
Nsv 10
All versions
Sonicwall
Nsv 100
All versions
Sonicwall
Nsv 1600
All versions
Sonicwall
Nsv 200
All versions
Sonicwall
Nsv 25
All versions
Sonicwall
Nsv 270
All versions
Sonicwall
Nsv 300
All versions
Sonicwall
Nsv 400
All versions
Sonicwall
Nsv 470
All versions
Sonicwall
Nsv 50
All versions
Sonicwall
Nsv 800
All versions
Sonicwall
Nsv 870
All versions
Configuration C
1 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Up to 7.0.1-r579
Running on/withPlatform Versions
Sonicwall
Nssp 13700
All versions
Sonicwall
Nssp 15700
All versions
Configuration D
1 vulnerable · 9 platform
Vulnerable SoftwareAffected Versions
Up to 6.5.4.7
Running on/withPlatform Versions
Sonicwall
Supermassive 9200
All versions
Sonicwall
Supermassive 9400
All versions
Sonicwall
Supermassive 9600
All versions
Sonicwall
Tz570
All versions
Sonicwall
Tz570p
All versions
Sonicwall
Tz570w
All versions
Sonicwall
Tz600
All versions
Sonicwall
Tz600p
All versions
Sonicwall
Tz670
All versions
Configuration E
1 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Up to 6.5.1.12
Running on/withPlatform Versions
Sonicwall
Nssp 12400
All versions
Sonicwall
Nssp 12800
All versions
Sonicwall
Supermassive 9800
All versions
Configuration F
1 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Up to 6.0.5.3-94o
Running on/withPlatform Versions
Sonicwall
Supermassive E10200
All versions
Sonicwall
Supermassive E10400
All versions
Sonicwall
Supermassive E10800
All versions
Configuration G
1 vulnerable · 29 platform
Vulnerable SoftwareAffected Versions
Up to 5.9.1.13
Running on/withPlatform Versions
Sonicwall
Nsa 2650
All versions
Sonicwall
Nsa 2700
All versions
Sonicwall
Nsa 3650
All versions
Sonicwall
Nsa 3700
All versions
Sonicwall
Nsa 4650
All versions
Sonicwall
Nsa 4700
All versions
Sonicwall
Nsa 5650
All versions
Sonicwall
Nsa 6650
All versions
Sonicwall
Nsa 6700
All versions
Sonicwall
Nsa 9250
All versions
Sonicwall
Nsa 9450
All versions
Sonicwall
Nsa 9650
All versions
Sonicwall
Soho 250
All versions
Sonicwall
Soho 250w
All versions
Sonicwall
Tz270
All versions
Sonicwall
Tz270w
All versions
Sonicwall
Tz300
All versions
Sonicwall
Tz300p
All versions
Sonicwall
Tz300w
All versions
Sonicwall
Tz350
All versions
Sonicwall
Tz350w
All versions
Sonicwall
Tz370
All versions
Sonicwall
Tz370w
All versions
Sonicwall
Tz400
All versions
Sonicwall
Tz400w
All versions
Sonicwall
Tz470
All versions
Sonicwall
Tz470w
All versions
Sonicwall
Tz500
All versions
Sonicwall
Tz500w
All versions

References (4)

Source: PSIRT@sonicwall.com
ExploitThird Party AdvisoryVDB Entry
Source: PSIRT@sonicwall.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.