Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
CVE's Videos

← Terug naar CVE-database

CVE-2021-20022

CRITICAL · 9.5 CVSS Gepubliceerd: CWE-434

Beschrijving

SonicWall Email Security contains an unrestricted upload of file with dangerous type vulnerability that allows a post-authenticated attacker to upload a file to the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20023 to achieve privilege escalation.

Required action: Apply updates per vendor instructions.

Vendors

Sonicwall

Affected products

Sonicwall Email Security

References