VYPR

SMA1000 Appliance Management Console

by SonicWall

CVEs (3)

  • CVE-2025-23006CriKEVJan 23, 2025
    risk 0.84cvss 9.8epss 0.23

    Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific conditions could potentially enable a remote unauthenticated attacker to execute…

  • CVE-2025-40602MedKEVDec 18, 2025
    risk 0.55cvss 6.6epss 0.02

    A local privilege escalation vulnerability due to insufficient authorization in the SonicWall SMA1000 appliance management console (AMC).

  • CVE-2026-15410HigKEVJul 14, 2026
    risk 0.24cvss 7.2epss 0.76

    Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute…