Výsledky hledání

výrobce: SonicWall× typ: zranitelnost× v celém archivu zrušit filtry

9 karet z 16 položek CZ · EN/orig

1

SonicWall security advisory (AV26-884)

Serial Number: AV26-884Date: September 4, 2026 As of September 4, 2026, SonicWall is affected by vulnerabilities in the following product: Network Security Manager (NSM) On-Prem (VMWare, Hyper-V, Azure and KVM) 4.3.0 and earlier versions The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. SonicWall NSM On-Prem Affected By Multiple Vulnerabilities Security Advisory

SonicWall CA

tg: zranitelnost

· Cyber Centre Kanada · SonicWall security advisory (AV26-884)

1

Multiples vulnérabilités dans Sonicwall Network Security Manager (04 septembre 2026)

De multiples vulnérabilités ont été découvertes dans Sonicwall Network Security Manager. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une élévation de privilèges et un contournement de la politique de sécurité.

EPSS 0.02 CVE-2026-78327 CVE-2026-78328 CVE-2026-81939 SonicWall FR

tg: zranitelnost

· CERT-FR – avis · Multiples vulnérabilités dans Sonicwall Network Security Manager (04 septembre 2026)

1

SPOJENO PŘES CVE SonicWall SMA1000 Series Appliances Affected By Multiple Vulnerabilities 10

Classification: Critical, Solution: Official Fix, Exploit Maturity: High, CVSSv3.0: 10.0, CVEs: CVE-2026-83548, CVE-2026-83549, Summary: 1) CVE-2026-83548 - Pre-authentication SSRF via unintended forward-proxy A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unauthorized access to sensitive functionality and perform…

KEV ✓ EPSS 0.09 CVSS 10.0 CVE-2026-83548 CVE-2026-83549 SonicWall FI US CA IT AT FR

tg: zneužíváno tg: zranitelnost

· NCSC-FI · SonicWall SMA1000 Series Appliances Affected By Multiple Vulnerabilities 10 · Rapid7 · Critical SonicWall SMA1000 Vulnerabilities CVE-2026-83548, CVE-2026-83549 Exploited in the Wild · Cyber Centre Kanada · SonicWall security advisory (AV26-872) · CSIRT Itálie (ACN) · SonicWall: rilevato sfruttamento in rete delle CVE-2026-83548 e CVE-2026-83549 · CERT.at · Kritische Sicherheitslücken in SonicWall SMA1000 Series - aktiv ausgenutzt - Updates verfügbar · CERT-FR – avis · Multiples vulnérabilités dans les produits SonicWall (02 septembre 2026)

6

CISA Adds Seven Known Exploited Vulnerabilities to Catalog

CISA has added seven new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-9586 Sangoma Switchvox SQL Injection Vulnerability CVE-2026-48710 Kludex Starlette HTTP Request/Response Smuggling Vulnerability CVE-2026-49869 Kestra OSS OS Command Injection Vulnerability CVE-2026-59822 BerriAI LiteLLM Improper Authentication Vulnerability CVE-2026-82329 JFrog Artifactory Improper Authentication Vulnerability CVE-2026-83548…

KEV ✓ EPSS 0.36 CVE-2026-48710 CVE-2026-49869 CVE-2026-59822 CVE-2026-82329 CVE-2026-83548 CVE-2026-83549 CVE-2026-9586 Sangoma JFrog SonicWall BerriAI veřejná správa US

tg: zneužíváno tg: zranitelnost

· CISA Advisories · CISA Adds Seven Known Exploited Vulnerabilities to Catalog

NCSC-2026-0337 [1.00] [H/H] Zero-Day kwetsbaarheden verholpen in SMA1000 Appliance van SonicWall

SonicWall heeft kwetsbaarheden verholpen in de SMA1000 Appliance. De SMA1000 Appliance bevat twee kwetsbaarheden. De eerste is een pre-authenticatie Server-Side Request Forgery (SSRF) in de Work Place interface, waarmee een externe, niet-geauthenticeerde aanvaller ongeautoriseerde acties kan uitvoeren. De tweede kwetsbaarheid betreft post-authenticatie remote code execution, waarbij een aanvaller met geldige inloggegevens willekeurige code op afstand kan uitvoeren. Beide kwetsbaarheden zijn als…

SonicWall NL

tg: zneužíváno tg: zranitelnost

· NCSC-NL · NCSC-2026-0337 [1.00] [H/H] Zero-Day kwetsbaarheden verholpen in SMA1000 Appliance van SonicWall

SPOJENO PŘES CVE SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability (CVE-2026-83548)

CISA added CVE-2026-83548 to the Known Exploited Vulnerabilities catalog. Affected product: SonicWall SMA1000 Appliances. Remediation due date: 2026-09-05.

KEV ✓ EPSS 0.05 CVE-2026-83548 SonicWall US FR

tg: zneužíváno tg: zranitelnost

· CISA KEV · SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability (CVE-2026-83548) · CERT-FR – alerty · Multiples vulnérabilités dans SonicWall Secure Mobile Access (02 septembre 2026)