【Vulnerability Alert】SonicWall SMA 1000 Series Contains Multiple High-Risk Security Vulnerabilities (CVE-2026-15409 and CVE-2026-15410). Please Confirm and Apply Patches as Soon as Possible

publish date : 2026-07-24 update date : 2026-07-24

Source: Ministry of education information & communication security contingency platform

"" "" ""

Publication Number TACERT-ANA-2026072108071717 Publication Time 2026-07-21 08:49:22
Incident Type ANA-Vulnerability Alert Discovery Time 2026-07-21 08:49:22
Impact Level Middle  
[Subject]
【Vulnerability Alert】SonicWall SMA 1000 Series Contains Multiple High-Risk Security Vulnerabilities (CVE-2026-15409 and CVE-2026-15410). Please Confirm and Apply Patches as Soon as Possible
[Content]

Forwarded from the National Institute of Cyber Security Cybersecurity Alert NISAC-200-202607-00000005

Researchers discovered that the SonicWall SMA 1000 Series contains multiple high-risk security vulnerabilities (CVE-2026-15409 and CVE-2026-15410), which are classified as Server-Side Request Forgery and Code Injection vulnerabilities, respectively. Both vulnerabilities have been exploited by hackers. Please confirm and apply patches as soon as possible.

CVE-2026-15409: An unauthenticated remote attacker may send specially crafted requests to the WorkPlace interface of an SMA 1000 appliance, causing the system to send requests to unintended locations.

CVE-2026-15410: A remote attacker who has obtained administrator privileges may execute arbitrary operating system commands through the Appliance Management Console (AMC).

Information Sharing Level: WHITE (the intelligence content is information that may be publicly disclosed)

[Affected Platform]

SonicWall SMA 1000 Series (6210, 7210, and 8200v)

platform-hotfix versions 12.4.3-03245, 12.4.3-03387, and 12.4.3-03434

platform-hotfix versions 12.5.0-02283, 12.5.0-02624, and 12.5.0-02800

[Recommended Actions]

The official vendor has released remediation updates for the vulnerabilities. Please upgrade to the following versions and refer to the official instructions for updating: https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0008

[Reference]

1. https://nvd.nist.gov/vuln/detail/CVE-2026-15409
2. https://nvd.nist.gov/vuln/detail/CVE-2026-15410
3. https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0008
4. https://www.cisa.gov/known-exploited-vulnerabilities-catalog

(This notification is for informational purposes only and does not constitute a cybersecurity incident).
If you have questions or suggestions regarding this notification, please feel free to contact us.
Ministry of education information & communication security contingency platform
Website: https://info.cert.tanet.edu.tw/
Phone: +886-7-5250211
Internet Phone: 98400000
E-Mail: service@cert.tanet.edu.tw
Organizer: Computer Center