.. / CVE-2021-20038

Exploit for SonicWall SMA100 Stack - Buffer Overflow/Remote Code Execution (CVE-2021-20038)

Description:

A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server’s mod_cgi module environment variables allows a remote unauthenticated attacker to potentially execute code as a ‘nobody’ user in the appliance. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances firmware 10.2.0.8-37sv, 10.2.1.1-19sv, 10.2.1.2-24sv and earlier versions.

Nuclei Template

View the template here CVE-2021-20038.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2021/CVE-2021-20038.yaml
Copy

References:

https://github.com/Ostorlab/KEV
https://github.com/jbaines-r7/badblood
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0026
https://nvd.nist.gov/vuln/detail/CVE-2021-20038
https://attackerkb.com/topics/QyXRC1wbvC/cve-2021-20038/rapid7-analysis