Skip to main content
See every side of every news story
Published loading...Updated

SonicWall Warns of Actively Exploited SMA1000 Zero-Day Flaws

SonicWall said hotfixes are available as attackers use a 10.0-rated flaw and a command injection bug to reach corporate networks.

  • SonicWall is urging customers to apply hotfixes after identifying two actively exploited zero-day vulnerabilities in SMA1000 series appliances that could allow attackers to compromise enterprise networks.
  • The first, CVE-2026-83548, is a pre-authentication SSRF vulnerability with a maximum CVSS score of 10.0; the second, CVE-2026-83549, is a post-authentication OS command injection issue in the Appliance Management Console rated 7.8.
  • NHS England warned that internet-facing gateways face growing attack risks, stating "firewalls and other edge devices are internet-facing by design and are highly attractive targets to attackers," with future exploitation assessed as almost certain.
  • SonicWall released hotfixes for affected appliances, and if systems appear compromised, the vendor recommends reimaging, changing all passwords, and resetting TOTP tokens to secure the network.
  • These disclosures continue a difficult trend for SonicWall's SMA1000 line, which saw a succession of vulnerabilities throughout 2025, including a similar pair of SSRF and OS command injection flaws in July of last year.
Insights by Ground AI
Podcasts & Opinions

21 Articles

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

BleepingComputer broke the news in Melville, United States on Wednesday, September 2, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal