CVE detail
CVE-2021-20037 — CVE-2021-20037
Published 2021-09-21 · Modified 2026-06-17 · Vendor sonicwall · Product global_vpn_client · Source nvd
HIGH
severity
CVSS-derived band
0.0042
EPSS probability
exploitation probability, 30d
34.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
SonicWall Global VPN Client 4.10.5 installer (32-bit and 64-bit) incorrect default file permission vulnerability leads to privilege escalation which potentially allows command execution in the host operating system. This vulnerability impacts GVC 4.10.5 installer and earlier.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References