Close Menu
NCIJ Network NCIJ Network
    What's Hot

    Remember the “caregiving kills” study? Reality is nuanced

    October 7, 2026

    Alabama Sets Stricter Data Center Rules. But There’s a Loophole.

    October 7, 2026

    Here’s What to Do About Trump’s War Crimes

    October 7, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Remember the “caregiving kills” study? Reality is nuanced
    • Alabama Sets Stricter Data Center Rules. But There’s a Loophole.
    • Here’s What to Do About Trump’s War Crimes
    • Kenya’s first Ebola case: Ten people quarantined as screening concerns grow
    • Trump to speak to Putin about plague lab death in Russia
    • Tories accused of prioritising rich voters as Badenoch lays out inheritance tax cut plan | Conservatives
    • Reform internal inquiry says party did not break law over donations sting
    • Google now lets you make games with AI
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Wednesday, October 7
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    SonicWall warns of max severity SSRF flaw in SMA1000 gateways

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKOctober 7, 2026 Cybersecurity No Comments2 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    SonicWall has released hotfixes to address a maximum-severity server-side request forgery (SSRF) flaw in SMA1000 series appliances.

    Tracked as CVE-2026-102255, the vulnerability was found in the Appliance WorkPlace interface of SMA1000 6210, 7210, and 8200v models, but it does not affect the SMA 100 Series product line or SSL-VPN running on SonicWall firewalls.

    The flaw stems from an unintended alternate access-path weakness that remote attackers without privileges can exploit in low-complexity attacks.

    “By abusing this path, a remote unauthenticated attacker could potentially exploit this vulnerability to direct the appliance to issue requests on their behalf and reach internal functionality and perform unauthorized operations,” SonicWall explained.

    While it has not yet flagged these flaws as actively exploited, the company urged customers to deploy hotfixes released on Tuesday to block potential attacks targeting their virtual or physical appliances.

    “SonicWall strongly advises users of the SMA1000 series appliances to upgrade to the mentioned fixed release version to address these vulnerabilities,” the company added. “There is currently no evidence any of the vulnerabilities addressed in this release are being exploited in the wild.”

    Internet security threat watchdog Shadowserver currently tracks over 400 Internet-exposed SMA1000 appliances, although some may have already been patched.

    Internet-exposed SMA1000 gateways
    Internet-exposed SMA1000 gateways (Shadowserver)

    Although CVE-2026-102255 is not exploited in the wild, attackers often target SMA1000 flaws because they affect enterprise-grade secure remote access gateways used by government agencies, Managed Service Providers (MSSPs), and many large corporations to provide VPN access to internal apps and corporate networks.

    Since the start of the year, threat actors have exploited several SMA1000 security vulnerabilities in zero-day attacks.

    In July, two SMA1000 zero-days (CVE-2026-15409 and CVE-2026-15410) were exploited for weeks to install custom Sou5, OrangeTail, and RootRun malware on vulnerable VPN appliances in attacks that the U.S. Cybersecurity and Infrastructure Security Agency (CISA) linked to ransomware gangs.

    Last month, SonicWall also warned customers that attackers were chaining two new zero-days (CVE-2026-83548 and CVE-2026-83549) to execute remote code on vulnerable SMA1000 gateways.

    CISA has added 19 SonicWall vulnerabilities to its list of actively exploited flaws over the last four years, 13 of which have also been abused in ransomware attacks.


    article image

    Join Mikko Hyppönen and security leaders from the NFL, CHANEL, and Atlassian for a two-hour digital summit on what AI-speed attacks change, what defenders should stop doing, and how to validate, decide, fix, and re-validate at machine speed.

    Save your seat

    Flaw Gateways Max severity SMA1000 SonicWall SSRF warns
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline

    Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access

    Anthropic Expands Claude Access for Vetted Cyber Teams as Glasswing Finds 129,000 Flaws

    100+ Compromised Websites Use Fake Cloudflare Checks to Deliver LunexStealer

    Hackers exploit 32 zero-days on first day of Pwn2Own Ireland

    Linux Backdoors Impersonate Email Security Tools to Evade Detection in Korea and Taiwan

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Remember the “caregiving kills” study? Reality is nuanced

    October 7, 2026

    Alabama Sets Stricter Data Center Rules. But There’s a Loophole.

    October 7, 2026

    Here’s What to Do About Trump’s War Crimes

    October 7, 2026

    Kenya’s first Ebola case: Ten people quarantined as screening concerns grow

    October 7, 2026
    Latest Posts

    British national shot dead in Kashmir by Pakistani security forces | Kashmir

    August 10, 2026

    Climate change doubled likelihood of Canada’s extreme fire weather, study finds

    August 10, 2026

    Scientists say just 7 days of meditation can rewire your brain

    August 10, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    Remember the “caregiving kills” study? Reality is nuanced

    October 7, 2026

    Alabama Sets Stricter Data Center Rules. But There’s a Loophole.

    October 7, 2026

    Here’s What to Do About Trump’s War Crimes

    October 7, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.