# SonicWall reports exploited SMA1000 zero-days and releases fixes

_Wednesday, September 2, 2026 at 1:04 AM EDT · Security · Latest · Tier 1 — Major_

![SonicWall reports exploited SMA1000 zero-days and releases fixes — Primary](https://www.securityweek.com/wp-content/uploads/2025/08/SonicWall.jpg)

SecurityWeek reported that SonicWall urged SMA1000 customers to patch two zero-day vulnerabilities the vendor says have been exploited. CVE-2026-83548 is a pre-authentication SSRF flaw in the Appliance Work Place interface that can allow remote access to sensitive functionality, while CVE-2026-83549 is an authenticated command-injection flaw in the Appliance Management Console. SonicWall said exploitation suggests the flaws have been chained. SMA1000 6210, 7210 and 8200v models are affected; specified hotfixes and later releases address them.

## Sources

- [SecurityWeek](https://www.securityweek.com/sonicwall-warns-of-two-sma1000-zero-days-exploited-in-attacks/)

---
Canonical: https://techandbusiness.org/newswire/HW6apQlk9D-7AU3weiSi9V
Retrieved: 2026-09-02T07:45:01.365Z
Publisher: Tech & Business (techandbusiness.org)
