SonicWall SMA1000
cpe:2.3:h:sonicwall:sma1000:*:*:*:*:*:*:*, +3 more
- 12.4.3-03245
- 12.4.3-03387
- 12.4.3-03434
- 12.5.0-02283
- 12.5.0-02624
- 12.5.0-02800
This vulnerability is being actively exploited in the wild.
A server-side request forgery (SSRF) vulnerability exists in the SonicWall SMA1000 Appliance Work Place interface. This vulnerability allows remote, unauthenticated attackers to manipulate the appliance into making requests to unintended locations. Affected models include the SMA1000 Models 6210, 7210, and 8200v, specifically versions 12.4.3-03245, 12.4.3-03387, 12.4.3-03434 (platform-hotfix), 12.5.0-02283, 12.5.0-02624, and 12.5.0-02800 (platform-hotfix).
Exploitation of this vulnerability could lead to unauthorized requests being made to internal or external resources, potentially allowing for further attacks or information disclosure.
Users are advised to upgrade to the latest hotfix version. The latest platform-hotfix is available for download on mysonicwall.com.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.