SonicWall reports two major security holes under active exploit
Summary
SonicWall has reported two critical vulnerabilities in its Secure Mobile Access 1000 series appliances, both of which are actively being exploited. One vulnerability allows unauthenticated attackers to gain unauthorized access and perform unauthorized operations, while the other enables an attacker to impersonate an administrator and execute arbitrary OS commands. SonicWall has released patches and advises immediate application, as there are no workarounds.
IFF Assessment
The article describes critical vulnerabilities being actively exploited, posing a significant threat to defenders.
Severity
CISA KEV: Listed as actively exploited. Federal patch due: September 05, 2026. Known ransomware use: Unknown.
Defender Context
Defenders must prioritize patching SonicWall SMA1000 series appliances immediately due to actively exploited vulnerabilities. The severity of these flaws, including remote code execution and unauthorized access bypassing authentication, requires urgent attention to prevent compromise and potential system control by attackers.