CVE-2021-20035: SonicWall SMA100 Appliances OS Command Injection
SonicWall SMA100 Appliances OS Command Injection Vulnerability. SonicWall SMA100 appliances contain an OS command injection vulnerability in the management interface that allows a remote authenticated attacker to inject arbitrary commands as a 'nobody' user, which could potentially lead to code execution.
- CISA KEV-listed (remediation due 2025-05-07)
- EPSS 12.8% (94.2% percentile)