SonicWall SMA1000 WorkPlace - Unauthenticated SSRF to CouchDB
CVE-2026-83548
Early Release
Description
A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path.
Severity
Critical
CVSS Score
10
Exploit Probability
5%
Affected Product
sma1000
Published Date
September 8, 2026
Template Author
rapid7, dhiyaneshdk
CVE-2026-83548.yaml
10.0Score
CVSS Metrics
CVSS Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CVE ID:
cve-2026-83548
CWE ID:
cwe-918
References
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0016https://www.sonicwall.com/support/notices/product-notice-sma-1000-series-affected-by-multiple-vulnerabilities-snwlid-2026-0016/kA1VN000002AXmQ0AWhttps://software.sonicwall.com/PFORMSMAHOTFIX/Documentation/TechNotepform-hotfix-12.5.0-02952.txthttps://www.rapid7.com/blog/post/etr-critical-sonicwall-sma1000-vulnerabilities-cve-2026-83548-cve-2026-83549-exploited-in-the-wild/
Remediation Steps
Apply SonicWall platform hotfix 12.4.3-03526 (12.4.x) or 12.5.0-02952 (12.5.x) immediately.