module
SonicWall SMA 100 Series Authenticated Command Injection
Disclosed | Created |
---|---|
2021-12-14 | 2022-01-17 |
Disclosed
2021-12-14
Created
2022-01-17
Description
This module exploits an authenticated command injection vulnerability
in the SonicWall SMA 100 series web interface. Exploitation results in
command execution as root. The affected versions are:
- 10.2.1.2-24sv and below
- 10.2.0.8-37sv and below
- 9.0.0.11-31sv and below
in the SonicWall SMA 100 series web interface. Exploitation results in
command execution as root. The affected versions are:
- 10.2.1.2-24sv and below
- 10.2.0.8-37sv and below
- 9.0.0.11-31sv and below
Author
jbaines-r7
Platform
Linux
Architectures
x86
References
Module Options
To display the available options, load the module within the Metasploit console and run the commands ‘show options’ or ‘show advanced’:

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.