Vulnerability Intelligence Report
SonicWall SMA1000 Appliances OS Command Injection Vulnerability
CVE-2026-83549
Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution.
CISA KEV
SSVC: Active Exploitation
Injection
CVSS Base Score
7.8
HIGH
Exploitability:1.9
Impact Score:5.9
EPSS Probability:8.51%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-78 ↗CWE-78 Improper neutralization of special elements used in an OS command ('OS command injection')
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| SonicWall | SMA1000 | 12.4.3-03453 (platform-hotfix) and older versions (affected), 12.5.0-02835 (platform-hotfix) and older versions (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
CISA KEV
ACTIVE IN CATALOG
EPSS Score
8.505%
GitHub Advisory
Vulnerability Class
Injection
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | SonicWall, Inc. · Vendor · USA |
| Reserved | 2026-08-31T18:15:33 |
| Published | 2026-09-01T21:28:50 |
| Patch Date | 2026-09-01 |
| Last Updated | 2026-09-21T13:07:29 |
Community Chatter & Buzz