CVE-2021-20016
KEV · ransomware Critical · CVSS 9.8- CVSS
- 9.8
- nvd
- EPSS
- —
- KEV
- Listed
- ransomware
- Class
- kernel local
- CWE-89, CWE-89
Description
A SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access username password and other session related information. This vulnerability impacts SMA100 build version 10.x.
References
Status: profiled · ingested 2026-08-12T06:00:50.000Z