SonicWall SMA 1000 appliances under attack via zero-day flaws – Help Net Security

SonicWall SMA 1000 appliances under attack via zero-day flaws – Help Net Security
Attackers are actively exploiting two newly disclosed SonicWall SMA 1000 vulnerabilities, including a pre-authentication SSRF flaw and an OS command injection issue that can lead to remote code execution. SonicWall urges customers to apply the hotfix immediately and check for compromise on affected SMA 1000 6210, 7210, and 8200v appliances. #CVE-2026-83548 #CVE-2026-83549 #SonicWall #SMA1000

Keypoints

  • Two zero-day vulnerabilities in SonicWall SMA 1000 are being actively exploited.
  • CVE-2026-83548 is a pre-authentication SSRF flaw in the Appliance Work Place interface.
  • CVE-2026-83549 is an OS command injection flaw in the Appliance Management Console.
  • The issues affect SMA 1000 6210, 7210, and 8200v physical and virtual models.
  • SonicWall advises applying the hotfix, checking for compromise, and re-imaging or re-deploying if needed.

Read More: https://www.helpnetsecurity.com/2026/09/02/sonicwall-sma-1000-cve-2026-83548-cve-2026-83549-zero-day-attacks/