SonicWall Secure Mobile Access 100 Series SSL-VPN 200
Secure-Mobile-Access-100-Series-SSL-VPN-200
Appliance
· SMA 100 Series
Is the SonicWall Secure Mobile Access 100 Series SSL-VPN 200 still supported?
No. SonicWall ended support for the SonicWall Secure Mobile Access 100 Series SSL-VPN 200 on 2014-03-01. No further security fixes will be issued. See SonicWall's lifecycle bulletin.
When does the SonicWall Secure Mobile Access 100 Series SSL-VPN 200 reach end of support?
SonicWall support for the SonicWall Secure Mobile Access 100 Series SSL-VPN 200 ends on 2014-03-01.
What replaces the SonicWall Secure Mobile Access 100 Series SSL-VPN 200?
SonicWall has not published a successor model for the SonicWall Secure Mobile Access 100 Series SSL-VPN 200.
What known-exploited CVEs apply to the SonicWall Secure Mobile Access 100 Series SSL-VPN 200 past end of support?
6 CVEs in CISA's Known Exploited Vulnerabilities catalog apply to the platform the SonicWall Secure Mobile Access 100 Series SSL-VPN 200 runs. These will not be patched on this device because it is past the SonicWall security-support date. See the Known Exploited Vulnerabilities table below for the full list.
Known Exploited Vulnerabilities
This device is past SonicWall's security-support date. 6 CVEs in CISA's Known Exploited Vulnerabilities catalog apply to the platform it runs. SonicWall is not issuing patches for this model. Isolate, compensate, or refresh.
| CVE | KEV added | Vulnerability | Flags |
|---|---|---|---|
CVE-2023-44221
|
SonicWall SMA100 Appliances OS Command Injection Vulnerability | ||
CVE-2021-20035
|
SonicWall SMA100 Appliances OS Command Injection Vulnerability | ||
CVE-2019-7483
|
SonicWall SMA100 Directory Traversal Vulnerability | ||
CVE-2021-20038
|
SonicWall SMA 100 Appliances Stack-Based Buffer Overflow Vulnerability | Ransomware | |
CVE-2019-7481
|
SonicWall SMA100 SQL Injection Vulnerability | Ransomware | |
CVE-2021-20016
|
SonicWall SSLVPN SMA100 SQL Injection Vulnerability | Ransomware |
Source: CISA Known Exploited Vulnerabilities catalog. The Ransomware flag reflects CISA's own knownRansomwareCampaignUse field, set when the CVE has been observed in ransomware campaigns per their threat intel. It's not a property of the vulnerability description itself.
Correlation is at the platform level, not per-OS-version. Not exhaustive: KEV only lists actively-exploited CVEs and many relevant unexploited vulnerabilities are not here. Verify against vendor security advisories (PSIRT, JSA, PAN-SA) and NVD before acting. See compensating controls if refresh isn't immediate.
SonicWall Secure Mobile Access 100 Series SSL-VPN 200 Lifecycle Overview
The SonicWall SonicWall Secure Mobile Access 100 Series SSL-VPN 200 (Secure-Mobile-Access-100-Series-SSL-VPN-200) is a appliance product in the SonicWall SMA 100 series. This product has reached end of life as of , meaning SonicWall no longer provides technical support, software updates, or hardware replacement for this product. It was last available for purchase on . Organizations still running the SonicWall Secure Mobile Access 100 Series SSL-VPN 200 should plan a migration .
Lifecycle Milestones
| Lifecycle notice published | 15y 5mo ago | |
|---|---|---|
| End of sale | 15y 5mo ago | |
| End of software maintenance | 14y 9mo ago | |
| Last date of support | 12y 5mo ago |