logo

A Vulnerability in SonicWall Secure Mobile Access (SMA) 1000 Series Appliances Could Allow for Remote Code Execution

ID: 7a810188-5b90-51cf-8695-9763e7d0f558

STIX ID: report--7a810188-5b90-51cf-8695-9763e7d0f558

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2025-01-27

Date Updated: 2026-04-27

...
...

A pre-authentication deserialization vulnerability (`CVE-2025-23006`) has been identified in SonicWall Secure Mobile Access (SMA) 1000 Series Appliances affecting the Appliance Management Console (AMC) and Central Management Console (CMC); under specific conditions this could enable a remote unauthenticated attacker to execute arbitrary operating system commands, and is categorized as Initial Access → Exploit Public-Facing Application (T1190).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.