CVE-2021-20022

CVE Published 2021-04-09
Related CWE(s) CWE-434: Unrestricted Upload of File with Dangerous Type
Related Vendor(s) sonicwall
Related Product(s) hosted_email_security, email_security
Exploitation Reported (CISA KEV) 2021-11-03
CVSS 3 Base Score 7.2 (HIGH)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector NETWORK

SonicWall Email Security version 10.0.9.x contains a vulnerability that allows a post-authenticated attacker to upload an arbitrary file to the remote host.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References