← Back to CVE List

CVE-2021-20039

Published: 2021-12-08T10:15Z
Last Modified: 2024-11-21T05:45Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Improper neutralization of special elements in the SMA100 management interface '/cgi-bin/viewcert' POST http method allows a remote authenticated attacker to inject arbitrary commands as a 'nobody' user. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt