← Back to feed
Vulnerabilities & PatchesEmerging1 sourceSep 3, 2026 · 12:25via Malware.news

SonicWall Vulnerabilities Exploited in the Wild

Brief

CVE-2026-83548: A critical, unauthenticated server-side request forgery (SSRF) vulnerability in the SMA1000 Appliance Work Place interface. It allows attackers to reach sensitive internal functionality through an unintended access path.

CVE-2026-83549: A high-severity OS command injection vulnerability in the Appliance Management Console (AMC). It can allow arbitrary operating-system command execution.

These two vulnerabilities can be chained together to achieve unauthenticated remote code execution, allowing attackers to access sensitive functionality and perform unauthorized operations.

CVE

CVE-2026-83548

CVE-2026-83549

Affected Products

SMA1000 Models – 6210, 7210, 8200v running the following versions:

Read more on Malware.news