AllCyberNews

CVE-2026-83549

SonicWall SMA 1000 appliances under attack via zero-day flaws

CVSS 7.8 high · SonicWall SMA1000 · published 2026-09-01

Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution.

Coverage 1 source

  1. 2026-09-02 Help Net Security critical SonicWall SMA 1000 appliances under attack via zero-day flaws

    Attackers exploit two zero-day flaws in SonicWall SMA 1000 appliances.

Mentioned with

CVE-2026-83548

Also covered