• Login
teqpost
  • Home
  • Hardware
  • Gaming
  • Gadgets
  • AI
  • Software
  • Security
  • Policy
No Result
View All Result
teqpost
  • Home
  • Hardware
  • Gaming
  • Gadgets
  • AI
  • Software
  • Security
  • Policy
No Result
View All Result
teqpost
No Result
View All Result

Home / Security / SonicWall patches two SMA1000 zero-days used in RCE attacks

SonicWall patches two SMA1000 zero-days used in RCE attacks

byLotfi Ben Taleb
September 3, 2026
in Security
Reading Time: 2 mins read
Rear panel of a networking device with USB, COM and ethernet ports connected to patch cables
Share on Facebook
Share on Twitter

SonicWall has released patches for two zero-day vulnerabilities in its SMA1000 series VPN appliances after confirming that attackers are already chaining the SMA1000 zero-day flaws together for unauthenticated remote code execution. The pair, tracked as CVE-2026-83548 and CVE-2026-83549, affect the Secure Mobile Access 1000 series, SonicWall’s line of enterprise remote-access gateways. Updates are available now.

What the SMA1000 zero-day flaws let attackers do

CVE-2026-83548 is a pre-authentication server-side request forgery (SSRF) vulnerability in the appliance, and it carries the maximum possible CVSS score of 10.0. On its own, an SSRF bug lets an attacker make the appliance issue requests on their behalf, usually against internal services they couldn’t otherwise reach. That’s already bad, but the two flaws don’t stay separate: chained with CVE-2026-83549, they add up to full unauthenticated remote code execution, meaning no valid login and no user interaction are needed to run arbitrary code on the box. For a VPN gateway sitting at the network edge, that’s the worst category of bug there is, a direct line from an internet-facing service to code execution.

SonicWall has not published a technical breakdown of CVE-2026-83549 to match the detail available for its partner flaw. Public reporting so far covers the SSRF mechanism in CVE-2026-83548 thoroughly, CVSS score included, while the second CVE is described only by its role in the chain. Anyone trying to fingerprint this attack in their own logs is working with half the picture until SonicWall or a researcher fills that gap; the two NVD entries linked above are the authoritative record to check as it fills in.

Who found the bugs and what to do next

These weren’t reported by an outside researcher racing to disclose a live zero-day. The Hacker News reports the pair was found internally by SonicWall’s own William Perry and Adam Babis, which is a cleaner path to a fix than a public dump, but it doesn’t lower the urgency: SonicWall says both flaws are already being exploited, so the patch needs to go on before an administrator gets around to it, not after. SMA1000 appliances are typically deployed as the single front door for remote employee access, which makes them a high-value target and a costly place to fall behind on updates.

SonicWall’s edge appliances have drawn repeated attention from intrusion campaigns before, which is part of why a pre-auth, CVSS-10 SSRF chained to RCE moved fast across security coverage. If your organisation runs SMA1000 hardware, the immediate steps are applying the update and checking appliance access logs for requests that suggest the SSRF path was used before the patch landed.

What to watch

Watch for SonicWall or CISA guidance naming indicators of compromise: zero-days on edge appliances that are already being exploited tend to earn a Known Exploited Vulnerabilities catalogue entry once exploitation is confirmed at scale. Also worth watching is whether SonicWall eventually publishes a detailed writeup of CVE-2026-83549 to match CVE-2026-83548’s, since that gap is currently the biggest obstacle to understanding exactly how the chain runs end to end.

Tags: privacyvulnerability
Previous Post

DLSS 5 mods expose RTX 5090’s power connector limit

Next Post

Xbox Cloud Gaming adds hour limits and pay-as-you-go option

Related Posts

Close-up of a clear RJ45 Ethernet connector on a cable against a cyan background
Security

Fortinet warns of critical FortiMail zero-day flaw

October 2, 2026
Tangled colored network patch cables running into a server rack panel
Security

Citrix confirms two NetScaler zero-days under active attack

September 28, 2026
Rows of blue-lit server hard drive caddies in a data center rack
Security

ShinyHunters bypass WAFs to exploit Oracle PeopleSoft flaw

September 27, 2026
0 0 votes
Article Rating
Subscribe
Notify of
0 Comments

Popular News

Three Samsung phone backs side by side, green with many cameras, purple and cream with three cameras

Galaxy S27 renders show a design split from the Ultra

October 1, 2026
Close-up of an iPhone's glass back and dual rear camera lenses lit from above

iPhone Duo 3D model lets you open the hinge before launch

September 20, 2026
A Radeon graphics card installed in a PC case, lit by green and blue ambient light

Modders get DLSS 5 running on AMD’s RDNA 4 GPUs

September 7, 2026
Close-up of a GeForce RTX graphics card installed in a PC case with a blurred power cable bundle

DLSS 5 mods expose RTX 5090’s power connector limit

September 27, 2026
Next Post
Black wireless game controller resting on a dark surface with dramatic low lighting

Xbox Cloud Gaming adds hour limits and pay-as-you-go option

Technology for enthusiasts and gamers. Hardware, gaming and the software in between, with the spec sheets read properly and the marketing taken back out.

Categories

Categories

  • AI
  • Gadgets
  • Gaming
  • Hardware
  • Policy
  • Security
  • Software
Site Links
  • Latest
  • About
  • Contact
About
  • How We Work
  • Privacy Policy

© 2026 teqpost. All rights reserved.

  • Privacy Policy
  • Contact

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Hardware
  • Gaming
  • Gadgets
  • AI
  • Software
  • Security
  • Policy

© 2026 JNews - Premium WordPress news & magazine theme by Jegtheme.

wpDiscuz
0
0
Would love your thoughts, please comment.x
()
x
| Reply