Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability

Vulnerability

A server-side request forgery (SSRF) vulnerability exists in the SonicWall SMA1000 Appliance Work Place interface. This vulnerability allows remote, unauthenticated attackers to manipulate the appliance into making requests to unintended locations. Affected models include the SMA1000 Models 6210, 7210, and 8200v, specifically versions 12.4.3-03245, 12.4.3-03387, 12.4.3-03434 (platform-hotfix), 12.5.0-02283, 12.5.0-02624, and 12.5.0-02800 (platform-hotfix).

Impact

Exploitation of this vulnerability could lead to unauthorized requests being made to internal or external resources, potentially allowing for further attacks or information disclosure.

Remediation

Users are advised to upgrade to the latest hotfix version. The latest platform-hotfix is available for download on mysonicwall.com.

Added: Jul 15, 2026, 5:50 AM
Updated: Jul 15, 2026, 5:50 AM

Vulnerability Rating

Custom Algorithm
spread
1.0
impact
0.4
exploitability
8.7
remediation
7.7
relevance
9.2
threat
8.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.