securityonline.info 6 Oct 2026, 17:29 UTC

SonicWall Patches Critical Pre-Auth Flaw in SMA1000 Appliances

SonicWall Patches Critical Pre-Auth Flaw in SMA1000 Appliances

SONICWALL has released patches for four vulnerabilities affecting SMA1000 remote-access appliances, led by CVE-2026-102255, a pre-authentication SSRF flaw with a perfect CVSS score of 10.0. The issue resides in the Work Place interface and allows an unauthenticated attacker to induce the appliance to issue requests on the attacker’s behalf, potentially reaching internal functionality and performing unauthorized operations. SonicWall notes there is currently no evidence of active exploitation in the wild for the vulnerabilities addressed.

In addition to CVE-2026-102255, three post-authentication flaws could enable further compromise. CVE-2026-102256 (CVSS 7.8) is an OS command-injection bug that could let an administrator run arbitrary commands. CVE-2026-102257 (CVSS 7.2) is a Zip Slip flaw in the Appliance Management Console, where a crafted archive could write files outside the intended folder, potentially enabling remote code execution. CVE-2026-102258 (CVSS 5.5) is a stored XSS flaw in the same console.

The issues affect SMA1000 models 6210, 7210 and 8200v running platform versions 12.4.3-03526 (and older) and 12.5.0-02952 (and older). SonicWall recommends upgrading to platform-hotfix 12.4.3-03670 or 12.5.0-03082 and later; SSL-VPN services on SonicWall firewalls and the SMA 100 series are not affected.

View full article

Article by CyberSIXT