Unrated severityNVD Advisory· Published Jul 23, 2025· Updated Jul 29, 2025
CVE-2025-40598
CVE-2025-40598
Description
A Reflected cross-site scripting (XSS) vulnerability exists in the SMA100 series web interface, allowing a remote unauthenticated attacker to potentially execute arbitrary JavaScript code.
Affected products
1- SonicWall/SMA 100 Seriesv5Range: 10.2.1.15-81sv and earlier versions
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0012mitrevendor-advisory
News mentions
0No linked articles in our index yet.