sonicwall global-vpn-client CVE-2021-20047 is a vulnerability in SonicWall Global Vpn Client
Published on December 8, 2021

SonicWall Global VPN client version 4.10.6 (32-bit and 64-bit) and earlier have a DLL Search Order Hijacking vulnerability. Successful exploitation via a local attacker could result in remote code execution in the target system.

NVD

Weakness Type

What is a DLL preloading Vulnerability?

The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.

CVE-2021-20047 has been classified to as a DLL preloading vulnerability or weakness.


Products Associated with CVE-2021-20047

Want to know whenever a new CVE is published for SonicWall Global Vpn Client? stack.watch will email you.

 

Affected Versions

SonicWall Global VPN Client Version Global VPN Client 4.10.6 and earlier is affected by CVE-2021-20047

Exploit Probability

EPSS
0.08%
Percentile
23.98%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.