CyberSecurity News
SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks
AI summary
SonicWall has warned of two zero-day vulnerabilities in its SMA1000 product that are being exploited in attacks. These vulnerabilities can be chained together to achieve unauthenticated remote code execution. The vulnerabilities are identified as CVE-2026-83549 and CVE-2026-83548. SonicWall has issued a warning about the exploitation of these vulnerabilities.
Vulnerabilities mentioned
Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution.
A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unauthorized access to sensitive functionality and perform unauthorized operations.
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to SecurityWeek.

