DEV Community

Cover image for SonicWall Patches Chained Zero-Day Vulnerabilities in SMA 1000 Series VPNs
BeyondMachines for BeyondMachines

Posted on Originally published at beyondmachines.net

SonicWall Patches Chained Zero-Day Vulnerabilities in SMA 1000 Series VPNs

Summary

SonicWall has patched two zero-day vulnerabilities (CVE-2026-83548 and CVE-2026-83549) in its SMA 1000 series VPN appliances that attackers are chaining to achieve unauthenticated remote code execution.

Take Action:

If you run SonicWall SMA 1000 appliances (models 6210, 7210, or 8200v), update immediately to version 12.4.3-03526 or 12.5.0-02952. These devices are actively attacked to take over VPN gateways. After patching review your logs for signs of compromise, if anything looks suspicious, re-image the appliance, change all passwords and reset TOTP tokens, and only restore backups from before the breach.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)