High severity7.8NVD Advisory· Published Dec 8, 2021· Updated Jun 17, 2026
CVE-2021-20047
CVE-2021-20047
Description
SonicWall Global VPN client version 4.10.6 (32-bit and 64-bit) and earlier have a DLL Search Order Hijacking vulnerability. Successful exploitation via a local attacker could result in remote code execution in the target system.
Affected products
4cpe:2.3:a:sonicwall:global_vpn_client:*:*:*:*:*:*:x64:*+ 3 more
- cpe:2.3:a:sonicwall:global_vpn_client:*:*:*:*:*:*:x64:*range: <=4.10.6
- cpe:2.3:a:sonicwall:global_vpn_client:*:*:*:*:*:*:x86:*range: <=4.10.6
- (no CPE)range: <=4.10.6
- (no CPE)range: Global VPN Client 4.10.6 and earlier
Patches
Vulnerability mechanics
References
1- psirt.global.sonicwall.com/vuln-detail/SNWLID-2021-0025nvdVendor Advisory
News mentions
0No linked articles in our index yet.