logo

SonicWall warns of actively exploited SMA1000 zero-day flaws

ID: b5998cca-5f39-5cc7-9f5e-7c1e85a82e97

STIX ID: report--b5998cca-5f39-5cc7-9f5e-7c1e85a82e97

Feed Name: Bleeping Computer

Threat Score
85/100

Date Published: 2026-09-02

Date Updated: 2026-09-10

Author: Sergiu Gatlan

...
...

SonicWall warns of active exploitation of two chained zero-day vulnerabilities in SMA1000 appliances (CVE-2026-83548 and CVE-2026-83549) that allow remote command execution; customers are urged to apply hotfixes, re-image appliances, change credentials, and reset TOTP if IOCs are found. The flaws affect SMA1000 6210, 7210, and 8200v models, Shadowserver reports 400+ exposed appliances, and the advisory ties into prior exploitation by ransomware groups and state-backed actors.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.