Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

SonicWall SMA1000 Appliances Code Injection Vulnerability

Vulnerability

A post-authentication code injection vulnerability has been identified in the SonicWall SMA1000 Appliance Management Console (AMC). Under specific conditions, this vulnerability could allow a remote authenticated attacker with administrative privileges to execute arbitrary operating system commands.

Impact

Exploitation of this vulnerability could lead to unauthorized execution of operating system commands with administrative privileges on the affected appliance.

Remediation

Users are advised to upgrade to version 12.4.3-03453 (platform-hotfix) or 12.5.0-02835 (platform-hotfix) and higher. The latest platform-hotfix is available for download on mysonicwall.com.

Added: Jul 15, 2026, 5:50 AM
Updated: Jul 15, 2026, 5:50 AM

Vulnerability Rating

Custom Algorithm
spread
1.0
impact
7.5
exploitability
6.7
remediation
7.7
relevance
9.2
threat
8.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.