Skip to content
feed: live
>_0dayNews
CVE Record
[ HIGH ]CVE-2026-83548

Pre-auth SSRF in SonicWall SMA1000 Workplace Interface

Unauthenticated SSRF in the SMA1000 Workplace interface allows remote attackers to reach internal functionality via an unintended access path. Exploited in the wild; chains with CVE-2026-83549 for RCE.

cat cve-2026-83548.json
Vendor
SonicWall
Product
SMA1000
CVSS
N/A
EPSS (exploit probability)
N/A
Status
exploited-in-wild
Published

CVE-2026-83548 is a pre-authentication server-side request forgery (SSRF) vulnerability in the SonicWall SMA1000 Appliance Work Place interface. An unintended alternate access path allows a remote, unauthenticated attacker to gain unauthorized access to internal functionality and perform unauthorized operations.

The vulnerability is being actively exploited in the wild, per SonicWall’s September 1, 2026 disclosure. It chains with CVE-2026-83549, a post-authentication OS command injection in the SMA1000 AMC, to enable unauthenticated remote code execution.

Affected: SonicWall SMA1000 series appliances. Consult the SonicWall PSIRT advisory for specific firmware versions and patching guidance.