Back to vendor advisories
SonicWall PSIRT AdvisoriesSNWLID-2026-0008

SonicWall SMA1000 Series Appliances Affected By Multiple Vulnerabilities

1) CVE-2026-15409 - A Server-side request forgery (SSRF) A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location. CVSS Score: 10.0 CVSS Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H CWE-918: Server-Side Request Forgery (SSRF) 2) CVE-2026-15410 - Post-authentication improper control of generation of code ('Code Injection') Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands. CVSS Score: 7.2 CVSS Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H CWE-94: Improper Control of Generation of Code ('Code Injection') IMPORTANT: SonicWall PSIRT has investigated multiple cases indicating the active exploitation of the vulnerabilities described in this advisory. Customers are strongly urged to upgrade to the hotfix release as soon as possible to remediate these vulnerabilities.

10.0CVSS out of 10Critical severity
Scope

What the vendor says is affected

  • SMA1000 Models - 6210, 7210, 8200v: 12.4.3-03245, 12.4.3-03387 and 12.4.3-03434 (platform-hotfix) 12.5.0-02283, 12.5.0-02624 and 12.5.0-02800 (platform-hotfix)

Versions the vendor lists as fixed

  • SMA1000 Models - 6210, 7210, 8200v: 12.4.3-03453 (platform-hotfix) and higher versions. 12.5.0-02835 (platform-hotfix) and higher versions.
Next step

What the vendor recommends

Install the applicable fixed SonicWall release for your product and branch. SMA1000 Models - 6210, 7210, 8200v: 12.4.3-03453 (platform-hotfix) and higher versions. 12.5.0-02835 (platform-hotfix) and higher versions.

Review the complete instructions on the vendor's site
Timeline

When this advisory changed

  1. Published by SonicWall

    The publication date reported by the vendor.

  2. Added to SecurityAlert

    We collected the advisory from the official source.

Vulnerabilities

CVEs named in this advisory