Pre-auth SSRF in SonicWall SMA1000 Workplace Interface
Unauthenticated SSRF in the SMA1000 Workplace interface allows remote attackers to reach internal functionality via an unintended access path. Exploited in the wild; chains with CVE-2026-83549 for RCE.
- Vendor
- SonicWall
- Product
- SMA1000
- CVSS
- N/A
- EPSS (exploit probability)
- N/A
- Status
- exploited-in-wild
- Published
CVE-2026-83548 is a pre-authentication server-side request forgery (SSRF) vulnerability in the SonicWall SMA1000 Appliance Work Place interface. An unintended alternate access path allows a remote, unauthenticated attacker to gain unauthorized access to internal functionality and perform unauthorized operations.
The vulnerability is being actively exploited in the wild, per SonicWall’s September 1, 2026 disclosure. It chains with CVE-2026-83549, a post-authentication OS command injection in the SMA1000 AMC, to enable unauthenticated remote code execution.
Affected: SonicWall SMA1000 series appliances. Consult the SonicWall PSIRT advisory for specific firmware versions and patching guidance.
