Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
SonicWall Patches Two Critical Zero-Day Vulnerabilities

SonicWall Patches Two Critical Zero-Day Vulnerabilities

Posted on September 2, 2026 By CWS

SonicWall has taken decisive action by releasing updates to mitigate two critical security vulnerabilities in its Secure Mobile Access (SMA) 1000 series VPN appliances. These vulnerabilities have reportedly been exploited in zero-day attacks, making immediate updates crucial for users.

Details of the Discovered Vulnerabilities

The security issues were identified internally by SonicWall experts William Perry and Adam Babis. The first vulnerability, CVE-2026-83548, carries the maximum CVSS score of 10.0. It is a pre-authentication server-side request forgery (SSRF) vulnerability in the Appliance Work Place interface, which potentially allows unauthenticated remote attackers to access sensitive functions and perform unauthorized operations.

The second flaw, CVE-2026-83549, has a CVSS score of 7.8. It involves a post-authentication operating system command injection vulnerability in the Appliance Management Console (AMC). This issue could enable an authenticated attacker with administrative privileges to execute arbitrary commands under certain conditions, leading to remote code execution (RCE).

Impacted Models and Versions

The vulnerabilities affect SMA 1000 models 6210, 7210, and 8200v, specifically in versions 12.4.3-03453 and older, as well as 12.5.0-02835 and older. SonicWall has addressed these issues with updates available in versions 12.4.3-03526 and 12.5.0-02952.

The company urges all users to upgrade to the latest versions immediately. Additionally, users are advised to review their systems for any indicators of compromise (IoCs). If any IoCs are detected, SonicWall recommends re-imaging or redeploying the appliances, changing all user and administrative passwords, and resetting Time-based One-Time Passwords (TOTP).

Ongoing Security Measures and Recommendations

While SonicWall has not disclosed specific details about the exploitation activities or the threat actors involved, this development follows the resolution of two other vulnerabilities in the same product line. These were exploited by a group identified as UTA0533 to deploy KNUCKLEBALL malware.

Ensuring robust cybersecurity measures and staying updated with the latest security patches is critical in protecting against potential threats. SonicWall’s proactive approach highlights the importance of staying vigilant and informed in the cybersecurity landscape.

This situation underscores the need for organizations to prioritize the security of their network infrastructures. Regular updates and monitoring for suspicious activities can significantly bolster defense mechanisms against cyber threats.

The Hacker News Tags:CVE, cyber attack, Cybersecurity, IOC, Malware, network security, RCE, security update, SMA 1000, software update, SonicWall, SSRF, Threat Actors, vulnerability patch, zero-day

Post navigation

Previous Post: HPE Fabric Composer Vulnerabilities Expose Critical Security Risks
Next Post: Virtualizor Update Compromised via BGP Hijack

Related Posts

Mustang Panda Deploys Updated COOLCLIENT Backdoor in Government Cyber Attacks Mustang Panda Deploys Updated COOLCLIENT Backdoor in Government Cyber Attacks The Hacker News
New Sturnus Android Trojan Quietly Captures Encrypted Chats and Hijacks Devices New Sturnus Android Trojan Quietly Captures Encrypted Chats and Hijacks Devices The Hacker News
Malicious PyPI Package Posing as Solana Tool Stole Source Code in 761 Downloads Malicious PyPI Package Posing as Solana Tool Stole Source Code in 761 Downloads The Hacker News
WhatsApp Worm, Critical CVEs, Oracle 0-Day, Ransomware Cartel & More WhatsApp Worm, Critical CVEs, Oracle 0-Day, Ransomware Cartel & More The Hacker News
67 Trojanized GitHub Repositories Found in Campaign Targeting Gamers and Developers 67 Trojanized GitHub Repositories Found in Campaign Targeting Gamers and Developers The Hacker News
Starkiller Phishing Suite Evades MFA with Reverse Proxy Starkiller Phishing Suite Evades MFA with Reverse Proxy The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Hackers Exploit Microsoft Teams for Remote Access
  • Virtualizor Update Compromised via BGP Hijack
  • SonicWall Patches Two Critical Zero-Day Vulnerabilities
  • HPE Fabric Composer Vulnerabilities Expose Critical Security Risks
  • Sality P2P Botnet Dismantled After Decades

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Hackers Exploit Microsoft Teams for Remote Access
  • Virtualizor Update Compromised via BGP Hijack
  • SonicWall Patches Two Critical Zero-Day Vulnerabilities
  • HPE Fabric Composer Vulnerabilities Expose Critical Security Risks
  • Sality P2P Botnet Dismantled After Decades

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark