CVE-2026-83549CISA KEVEPSS p95.7%

CVE-2026-83549SonicWall SMA1000 Appliances OS Command Injection Vulnerability

SonicWall / SMA1000 Appliances

Description

SonicWall SMA1000 Appliances contains an OS command injection vulnerability that could enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution.

Scoring

CVSS 7.8 ()
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS10.76% probability of exploitation · percentile 95.7% · 2026-10-05T12:00:23Z
Last modified2026-09-21

CISA KEV entry

Added to KEV: 2026-09-02

Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.