Description
A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location.
Published: 2026-07-14
Score: 10 Critical
EPSS: 83.7% High
KEV: Yes
Impact: n/a
Action: n/a
AI Analysis

Impact

A Server‑Side Request Forgery (SSRF) flaw exists within the Work Place interface of SonicWall SMA1000 appliances. The vulnerability, classified as CWE‑918, enables a remote actor who does not need to authenticate to the device to instruct the appliance to send HTTP requests to arbitrary URLs. It is inferred that the flaw could lead to unintended data exfiltration, credential discovery, or other actions from the appliance’s network context.

Affected Systems

SonicWall SMA1000 appliances are affected. No specific firmware versions are listed, so the scope is unclear beyond the existence of the vulnerability.

Risk and Exploitability

The flaw carries a CVSS score of 10, indicating critical severity, and an EPSS score of 84%, reflecting a high likelihood that exploitation attempts are currently in progress. The item is listed in CISA’s KEV catalog, confirming active exploitation in the wild. Attackers exploit it by sending crafted requests to the exposed Work Place interface, which then forwards the request outbound, regardless of the destination headers supplied. No authentication or additional access controls are required, allowing an attacker to trigger the request from any network location that can reach the interface.

Generated by OpenCVE AI on August 24, 2026 at 16:32 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Deploy the vendor‑issued firmware update that addresses the SSRF defect.
  • If a patch is unavailable, shut down or block access to the Work Place interface to prevent the attack surface.
  • Configure outbound filtering or a firewall to allow the appliance to contact only approved external destinations, thereby limiting the scope of any successful SSRF attack.

Generated by OpenCVE AI on August 24, 2026 at 16:32 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 24 Aug 2026 17:00:00 +0000

Type Values Removed Values Added
Title SSRF Vulnerability in SonicWall SMA1000 Work Place Interface Allowing Unauthenticated Remote Requests

Wed, 12 Aug 2026 01:00:00 +0000

Type Values Removed Values Added
Title SSRF Vulnerability in SonicWall SMA1000 Work Place Interface Allowing Unauthenticated Remote Requests

Tue, 04 Aug 2026 19:00:00 +0000

Type Values Removed Values Added
Title SSRF Vulnerability in SonicWall SMA1000 Work Place Interface Allowing Unauthenticated Remote Requests

Sat, 01 Aug 2026 09:45:00 +0000

Type Values Removed Values Added
Title SSRF Vulnerability in SonicWall SMA1000 Work Place Interface Enabling Unauthenticated Remote Requests

Sun, 26 Jul 2026 11:00:00 +0000

Type Values Removed Values Added
Title SSRF Vulnerability in SonicWall SMA1000 Work Place Interface Enabling Unauthenticated Remote Requests

Wed, 22 Jul 2026 09:30:00 +0000

Type Values Removed Values Added
Title Unauthenticated SSRF in SonicWall SMA1000 Work Place Interface

Mon, 20 Jul 2026 21:45:00 +0000

Type Values Removed Values Added
Title Unauthenticated SSRF in SonicWall SMA1000 Work Place Interface

Wed, 15 Jul 2026 11:45:00 +0000

Type Values Removed Values Added
First Time appeared Sonicwall
Sonicwall sma1000
Vendors & Products Sonicwall
Sonicwall sma1000

Tue, 14 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
References
Metrics cvssV3_1

{'score': 10, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 14 Jul 2026 20:00:00 +0000

Type Values Removed Values Added
Description A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. A remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location.
Weaknesses CWE-918
References
Metrics kev

{'dateAdded': '2026-07-14T00:00:00+00:00', 'dueDate': '2026-07-17T00:00:00+00:00'}


Subscriptions

Sonicwall Sma1000 Sma6210 Sma6210 Firmware Sma7210 Sma7210 Firmware Sma8200v
cve-icon MITRE

Status: PUBLISHED

Assigner: sonicwall

Published:

Updated: 2026-08-04T03:56:14.089Z

Reserved: 2026-07-10T14:12:14.377Z

Link: CVE-2026-15409

cve-icon Vulnrichment

Updated: 2026-07-14T20:09:22.958Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-14T20:16:56.783

Modified: 2026-07-16T05:16:18.293

Link: CVE-2026-15409

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-24T16:45:06Z

Weaknesses
  • CWE-918

    Server-Side Request Forgery (SSRF)