SonicWall Vulnerabilities Exploited in the Wild
Brief
CVE-2026-83548: A critical, unauthenticated server-side request forgery (SSRF) vulnerability in the SMA1000 Appliance Work Place interface. It allows attackers to reach sensitive internal functionality through an unintended access path.
CVE-2026-83549: A high-severity OS command injection vulnerability in the Appliance Management Console (AMC). It can allow arbitrary operating-system command execution.
These two vulnerabilities can be chained together to achieve unauthenticated remote code execution, allowing attackers to access sensitive functionality and perform unauthorized operations.
CVE
CVE-2026-83548
CVE-2026-83549
Affected Products
SMA1000 Models – 6210, 7210, 8200v running the following versions:
