CVE-2021-20021KEV · OVERDUECWE-269privilege-escalation

SonicWall Email Security Improper Privilege Management Vulnerability

Critical · published April 9, 2021

Patch now

Confirmed exploited, and the score agrees

CVSS calls it critical at 9.8. It is confirmed in active exploitation. It sits in the 99.7th percentile for exploit probability.

1754
days past CISA
deadline
CVSS v3.1
9.8
EPSS
83%
Percentile
99.7
In the wild
Confirmed
What it is

🚨 An attacker only needs to send a single crafted HTTP request to create an administrative account on SonicWall Email Security! 🔥 Think of it like a thief slipping a forged ID to a security guard — they can walk right in as if they belong, potentially wreaking havoc without anyone noticing! With this vulnerability, hackers can gain full control over your email security system. This means they could access sensitive data, manipulate email flows, or even launch further attacks against your organization. The consequences could be absolutely devastating!

Put simply

Think of it like a thief slipping a forged ID to a security guard — they can walk right in as if they belong, potentially wreaking havoc without anyone noticing! This vulnerability allows attackers to exploit SonicWall Email Security by sending an unverified HTTP request to create new administrative accounts, bypassing standard authentication checks altogether.

What to do

With this vulnerability, hackers can gain full control over your email security system. This means they could access sensitive data, manipulate email flows, or even launch further attacks against your organization. The consequences could be absolutely devastating! Immediately update SonicWall Email Security to version 10.0.9.10 or later to patch this hole. Also, review account activity logs for any unauthorized access and implement stronger HTTP request validation as an additional precaution. You've got this! Take action now and keep your systems secure! 🛡️

The record
Technical detail
CVSS v3.1
9.8 · CRITICAL
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.83425 · 99.7th percentile
Weakness
CWE-269 · Improper Privilege Management
Published
2021-04-09T22:15Z
KEV added
2021-11-03 · due 2021-11-17
Affected products (11)
ProductVersionsFixed in
sonicwall/email_security< 10.0.9.610310.0.9.6103
sonicwall/email_security_appliance_9000_firmware< 10.0.9.610510.0.9.6105
sonicwall/email_security_appliance_3300_firmware< 10.0.9.610510.0.9.6105
sonicwall/email_security_appliance_4300_firmware< 10.0.9.610510.0.9.6105
sonicwall/email_security_appliance_8300_firmware< 10.0.9.610510.0.9.6105
sonicwall/email_security_appliance_5000_firmware< 10.0.9.610510.0.9.6105
sonicwall/email_security_appliance_7000_firmware< 10.0.9.610510.0.9.6105
sonicwall/email_security_appliance_5050_firmware< 10.0.9.610510.0.9.6105
sonicwall/email_security_appliance_7050_firmware< 10.0.9.610510.0.9.6105
sonicwall/email_security_virtual_appliance< 10.0.9.610510.0.9.6105
sonicwall/hosted_email_security< 10.0.9.610310.0.9.6103
References (3)
EPSS history
Timeline
  • 03 NOV 00:00Z
    Added to CISA KEV — remediate by Nov 17
    kev
  • 09 APR 17:50Z
    A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account by sending a crafted HTTP request to…
    cvelistv5