SonicWall SMA 100 Firmware 9.0.0.3

CPE Details

SonicWall SMA 100 Firmware 9.0.0.3
9.0.0.3
2019-12-19
12h01 +00:00
2021-05-26
16h50 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:o:sonicwall:sma_100_firmware:9.0.0.3:*:*:*:*:*:*:*

Informations

Vendor

sonicwall

Product

sma_100_firmware

Version

9.0.0.3

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2021-20050 2021-12-23 00h20 +00:00 An Improper Access Control Vulnerability in the SMA100 series leads to multiple restricted management APIs being accessible without a user login, potentially exposing configuration meta-data.
7.5
Haute
CVE-2021-20049 2021-12-23 00h20 +00:00 A vulnerability in SonicWall SMA100 password change API allows a remote unauthenticated attacker to perform SMA100 username enumeration based on the server responses. This vulnerability impacts 10.2.1.2-24sv, 10.2.0.8-37sv and earlier 10.x versions.
7.5
Haute
CVE-2020-5146 2021-01-08 23h15 +00:00 A vulnerability in SonicWall SMA100 appliance allow an authenticated management-user to perform OS command injection using HTTP POST parameters. This vulnerability affected SMA100 Appliance version 10.2.0.2-20sv and earlier.
7.2
Haute
CVE-2019-7483 2019-12-19 00h35 +00:00 In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user to test for the presence of a file on the server.
7.5
Haute
CVE-2019-7484 2019-12-18 23h35 +00:00 Authenticated SQL Injection in SonicWall SMA100 allow user to gain read-only access to unauthorized resources using viewcacert CGI script. This vulnerability impacted SMA100 version 9.0.0.3 and earlier.
6.5
Moyen
CVE-2019-7485 2019-12-18 23h35 +00:00 Buffer overflow in SonicWall SMA100 allows an authenticated user to execute arbitrary code in DEARegister CGI script. This vulnerability impacted SMA100 version 9.0.0.3 and earlier.
8.8
Haute
CVE-2019-7486 2019-12-18 23h35 +00:00 Code injection in SonicWall SMA100 allows an authenticated user to execute arbitrary code in viewcacert CGI script. This vulnerability impacted SMA100 version 9.0.0.4 and earlier.
8.8
Haute
CVE-2019-7482 2019-12-18 23h35 +00:00 Stack-based buffer overflow in SonicWall SMA100 allows an unauthenticated user to execute arbitrary code in function libSys.so. This vulnerability impacted SMA100 version 9.0.0.3 and earlier.
9.8
Critique
CVE-2019-7481 2019-12-17 22h25 +00:00 Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only access to unauthorized resources. This vulnerablity impacted SMA100 version 9.0.0.3 and earlier.
7.5
Haute