SonicWall warns of max severity SSRF flaw in SMA1000 gateways
Read original article ↗AI Summary
SonicWall has disclosed a maximum-severity server-side request forgery (SSRF) vulnerability, tracked as CVE-2026-102255, affecting SMA1000 series appliances (6210, 7210, and 8200v models). The flaw exists in the Appliance WorkPlace interface and allows unauthenticated remote attackers to direct the appliance to make internal requests, potentially accessing restricted functionality. While there is no current evidence of exploitation in the wild, the vulnerability poses significant risk due to the strategic positioning of SMA1000 gateways in enterprise networks. SonicWall urges customers to apply released hotfixes immediately to mitigate potential attacks.
AI-extracted · verify before operational use
No entities or IoCs were extracted from this article.