Description
Post-authentication Stored Cross-Site Scripting (XSS) vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to store and potentially execute arbitrary JavaScript code in the Appliance Management Console (AMC).
Published: 2026-10-07
Score: 6.1 Medium
EPSS: n/a
KEV: No
Impact: Stored XSS leading to arbitrary code execution within the SonicWall SMA1000 Appliance Management Console
Action: Immediate Patch
AI Analysis

Impact

A post‑authentication stored cross‑site scripting vulnerability allows an attacker who has administrative credentials to store malicious JavaScript in the management console. Once injected, the script can execute in the context of the console, enabling arbitrary code execution, data exfiltration, or manipulation of device settings.

Affected Systems

The affected product is the SonicWall SMA1000 Appliance Management Console. No specific version information is provided.

Risk and Exploitability

The CVSS score is 6.1, indicating medium severity, and the EPSS score is not available. The vulnerability is not listed in the CISA KEV catalog. Because the flaw requires administrative authentication and provides a path to arbitrary code execution, the risk to confidentiality, integrity, and availability is high. An attacker who can log in as administrator could leverage this flaw to compromise the console’s operations, potentially extending control to the underlying network appliance.

Generated by OpenCVE AI on October 7, 2026 at 17:07 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the latest firmware or software update for the SMA1000 Appliance Management Console that addresses the XSS flaw.
  • Change administrative passwords and enforce strong password policies to limit privileged access.
  • Restrict or monitor administrative access to the console and review logged activity for signs of unauthorized script injection.

Generated by OpenCVE AI on October 7, 2026 at 17:07 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 07 Oct 2026 17:30:00 +0000

Type Values Removed Values Added
Title Authenticated Stored Cross‑Site Scripting in SonicWall SMA1000 AMC

Wed, 07 Oct 2026 16:00:00 +0000

Type Values Removed Values Added
First Time appeared Sonicwall
Sonicwall sma1000
Vendors & Products Sonicwall
Sonicwall sma1000

Wed, 07 Oct 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 07 Oct 2026 15:00:00 +0000

Type Values Removed Values Added
Title Authenticated Stored Cross‑Site Scripting in SonicWall SMA1000 AMC

Wed, 07 Oct 2026 13:45:00 +0000

Type Values Removed Values Added
Description Post-authentication Stored Cross-Site Scripting (XSS) vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to store and potentially execute arbitrary JavaScript code in the Appliance Management Console (AMC).
Weaknesses CWE-79
References

Subscriptions

Sonicwall Sma1000
cve-icon MITRE

Status: PUBLISHED

Assigner: sonicwall

Published:

Updated: 2026-10-07T14:37:48.768Z

Reserved: 2026-09-28T19:39:42.850Z

Link: CVE-2026-102258

cve-icon Vulnrichment

Updated: 2026-10-07T14:37:43.794Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-10-07T14:17:07.883

Modified: 2026-10-07T15:16:56.450

Link: CVE-2026-102258

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-07T17:15:15Z

Weaknesses
  • CWE-79

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')