CVE-2026-102255
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. By abusing this path, a remote unauthenticated attacker could potentially exploit this vulnerability to direct the appliance to issue requests on their behalf and reach internal functionality and perform unauthorized operations.
| CWE | CWE-918 CWE-441 |
| Vendor | sonicwall |
| Product | sma1000 |
| Published | Oct 7, 2026 |
Stay Ahead of the Next One
Get instant alerts for sonicwall sma1000
Be the first to know when new unknown vulnerabilities affecting sonicwall sma1000 are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
SonicWall / SMA1000
12.4.3-03526 (platform-hotfix) and older versions 12.5.0-02952 (platform-hotfix) and older versions