Warning: SonicWall's Secure Mobile Access 100 series, Patch Immediately!
ID: 553d1c33-f13a-572f-804c-7a221c5bbf52
STIX ID: report--553d1c33-f13a-572f-804c-7a221c5bbf52
Multiple critical vulnerabilities were disclosed in SonicWall SMA100 (<= 10.2.1.15-81sv), including unauthenticated stack- and heap-based buffer overflows enabling remote code execution (CVE-2025-40596, CVE-2025-40597), a reflected XSS (CVE-2025-40598), and an authenticated arbitrary file upload leading to RCE (CVE-2025-40599, CVSS up to 9.1). A public technical analysis exists, increasing the risk of near-term exploitation; immediate patching, enhanced detection/monitoring, and incident reporting are recommended.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
