🔙 목록으로 돌아가기

CVE-2021-20021: SonicWall Email Security <= 10.0.9.x - Unauthenticated Admin Account Creation

TitleSonicWall Email Security <= 10.0.9.x - Unauthenticated Admin Account Creation
Authorpussycat0x
SeverityCritical
ImpactAttackers can create admin accounts remotely, leading to full control over the email security system.
RemediationUpdate to the latest version of SonicWall Email Security or apply security patches provided by SonicWall.
CVSS Score9.8
EPSS Score0.90152
CVE IDCVE-2021-20021
CWE IDCWE-269
Shodan Queryproduct:"SonicWALL Email Security"
Tags cve cve2021 sonicwall email-security auth-bypass kev passive vkev vuln

🔍 Vulnerability Description

SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host.

🌐 HTTP Request

GET /login.html HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:134.0) Gecko/20100101 Firefox/134.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-20021.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-20021.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A