SSRF Vulnerability in SMA1000 Appliance Work Place Interface by SonicWall
CVE-2026-83548

Currently unrated

Key Information:

Vendor

Sonicwall

Status
Vendor
CVE Published:
1 September 2026

What is CVE-2026-83548?

A vulnerability exists in the SMA1000 Appliance's Work Place interface that allows for Pre-authentication SSRF attacks. This occurs due to an unintended alternate access path, enabling remote unauthenticated attackers to exploit the system. By leveraging this vulnerability, an attacker may gain unauthorized access to sensitive functionalities and execute unauthorized operations, posing significant risks to the integrity and confidentiality of the network.

Affected Version(s)

SMA1000 Linux 12.4.3-03453 (platform-hotfix) and older versions

SMA1000 Linux 12.5.0-02835 (platform-hotfix) and older versions

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Adam Babis of SonicWall PSIRT
.