SonicWall patches maximum-severity SSRF flaw in SMA1000 gateways

· Original article ↗

Summary

SonicWall released hotfixes for an unauthenticated SSRF flaw in SMA1000 gateways. The company says it has no evidence of exploitation and urges customers to update affected appliances.

Key points

  • CVE-2026-102255 affects the Appliance WorkPlace interface on SMA1000 6210, 7210, and 8200v models.
  • Remote attackers without credentials could exploit the flaw to make appliances send requests and reach internal functionality for unauthorized operations.
  • SonicWall released hotfixes and advises customers to upgrade affected appliances.
  • SonicWall says there is currently no evidence the vulnerability is being exploited in the wild.
  • The flaw does not affect the SMA 100 Series or SSL-VPN running on SonicWall firewalls.
  • Shadowserver tracks more than 400 internet-exposed SMA1000 appliances, though some may already be patched.

Article Details

Vulnerability Types
  • Server-side request forgery (SSRF)
Severity
Maximum severity
Exploitation Status
not_reported
Exploit Availability
unknown
Patch Status
available

MITRE ATT&CK

CVE

Malware

Vendors

Products

Industries

Related Articles