Back to vendor advisories
SonicWall PSIRT AdvisoriesSNWLID-2026-0016

SonicWall SMA1000 Series Appliances Affected By Multiple Vulnerabilities

1) CVE-2026-83548 - Pre-authentication SSRF via unintended forward-proxy A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unauthorized access to sensitive functionality and perform unauthorized operations.. CVSS Score: 10.0 CVSS Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H CWE-918: Server-Side Request Forgery (SSRF) CWE-441: Unintended Proxy or Intermediary ('Confused Deputy') 2) CVE-2026-83549 - Post-authentication Remote Code Execution (RCE) Vulnerability Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution. CVSS Score: 7.8 CVSS Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') IMPORTANT: SonicWall PSIRT has investigated a case indicating the active exploitation of the vulnerabilities described in this advisory. Customers are strongly urged to upgrade to the hotfix release as soon as possible to remediate this vulnerability.

10.0CVSS out of 10Critical severity
Scope

What the vendor says is affected

  • SMA1000 Models - 6210, 7210, 8200v: 12.4.3-03453 (platform-hotfix) and older versions. 12.5.0-02835 (platform-hotfix) and older versions.

Versions the vendor lists as fixed

  • SMA1000 Models - 6210, 7210, 8200v: 12.4.3-03526 (platform-hotfix) and higher versions. 12.5.0-02952 (platform-hotfix) and higher versions.
Next step

What the vendor recommends

Install the applicable fixed SonicWall release for your product and branch. SMA1000 Models - 6210, 7210, 8200v: 12.4.3-03526 (platform-hotfix) and higher versions. 12.5.0-02952 (platform-hotfix) and higher versions.

Review the complete instructions on the vendor's site
Timeline

When this advisory changed

  1. Published by SonicWall

    The publication date reported by the vendor.

  2. Added to SecurityAlert

    We collected the advisory from the official source.

Vulnerabilities

CVEs named in this advisory