Executive brief
A security vulnerability exists in SonicWall SMA 1000 series appliances, which are used to provide secure remote access to corporate networks. An attacker who already has limited, read-only administrative access can exploit this flaw to gain full control over the device. This could allow an unauthorized user to modify security settings, access sensitive data, or disrupt remote connectivity for the entire organization.
Technical details
An SQL injection vulnerability (CWE-89) exists in the management interface of SonicWall SMA 1000 series appliances due to improper neutralization of special elements used in SQL commands. The vulnerability is reachable over the network but requires the attacker to be authenticated with high-level (read-only administrator) privileges. By submitting crafted SQL queries, an attacker can bypass intended access controls to escalate their permissions to those of a primary administrator. This grants the attacker full confidentiality, integrity, and availability impact over the appliance's database and configuration.
Affected products
- SonicWall SMA 1000 series
Timeline
- 2026-04-09: disclosed
- 2026-04-09: advisory