Unrated severityCISA KEVNVD Advisory· Published Aug 4, 2021· Updated Oct 21, 2025
CVE-2021-20028
CVE-2021-20028
Description
Improper neutralization of a SQL Command leading to SQL Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products, specifically the SRA appliances running all 8.x firmware and 9.0.0.9-26sv or earlier
Affected products
1- SonicWall/SonicWall SRA/SMA100v5Range: 8.x firmware
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0017mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.