SonicWall: Patch Is Only Step One of Four for SMA 1000 Flaws
SonicWall disclosed two exploited vulnerabilities in SMA 1000 gateways: CVE-2026-83548 (CVSS 10.0) and CVE-2026-83549 (CVSS 7.8). CISA added the critical flaw to its KEV catalog on September 3. The vendor recommends patching, reinstalling the device, changing passwords, and reissuing TOTP tokens.
- CVE-2026-83548: pre-auth SSRF, CVSS 10.0, exploited in the wild
- CVE-2026-83549: OS command injection, CVSS 7.8, requires admin rights
- Affected models: 6210, 7210, and 8200v, physical and virtual
- Vendor published no IOCs, recommends contacting support
Read next
Security