Description
A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location.
CVSS breakdown
CVSS 3.1
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Changed
Confidentiality
High
Integrity
High
Availability
High
Affected products
- SonicWall / SMA100012.4.3-03245 – 12.4.3-03434
- SonicWall / SMA100012.5.0-02283 – 12.5.0-02800
- SonicWall / sma6210_firmware12.4.3-03245 – 12.4.3-03245
- SonicWall / sma6210_firmware12.4.3-03387 – 12.4.3-03387
- SonicWall / sma6210_firmware12.4.3-03434 – 12.4.3-03434
- SonicWall / sma6210_firmware12.5.0-02283 – 12.5.0-02283
- SonicWall / sma6210_firmware12.5.0-02624 – 12.5.0-02624
- SonicWall / sma6210_firmware12.5.0-02800 – 12.5.0-02800
- SonicWall / sma7210_firmware12.4.3-03245 – 12.4.3-03245
- SonicWall / sma7210_firmware12.4.3-03387 – 12.4.3-03387
- SonicWall / sma7210_firmware12.4.3-03434 – 12.4.3-03434
- SonicWall / sma7210_firmware12.5.0-02283 – 12.5.0-02283
- SonicWall / sma7210_firmware12.5.0-02624 – 12.5.0-02624
- SonicWall / sma7210_firmware12.5.0-02800 – 12.5.0-02800
- SonicWall / sma8200v12.4.3-03245 – 12.4.3-03245
- SonicWall / sma8200v12.4.3-03387 – 12.4.3-03387
- SonicWall / sma8200v12.4.3-03434 – 12.4.3-03434
- SonicWall / sma8200v12.5.0-02283 – 12.5.0-02283
- SonicWall / sma8200v12.5.0-02624 – 12.5.0-02624
- SonicWall / sma8200v12.5.0-02800 – 12.5.0-02800
Exploits & proofs of concept
- nucleiSonicWall SMA1000 - Server-Side Request Forgeryby DhiyaneshDk,rapid7
News coverage
- Two SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin CommandsThe Hacker News · 7/15/2026
- SonicWall warns of SMA1000 flaws exploited in zero-day attacks, patch nowBleepingComputer · 7/14/2026
References
Updated 44m ago · 8 sources