SonicWall SMA1000 Appliances OS Command Injection Vulnerability
- Severity
- HIGH
- Affected component
- sonicwall-sma1000 (other)
- Patched version
- Not yet available
SonicWall SMA1000 Appliances have been confirmed to contain an OS command injection vulnerability that could enable remote code execution by an authenticated attacker.
What happened
SonicWall SMA1000 Appliances are affected by a high severity OS command injection vulnerability, tracked as CVE-2026-83549. This vulnerability could allow a remote authenticated attacker to execute arbitrary OS commands, leading to remote code execution. The vulnerability was first flagged and confirmed on September 2, 2026. It has been exploited in the wild.
The specific versions of sonicwall-sma1000 affected by this vulnerability have not been authoritatively published. Engineers should consult the primary sources for the most current information on affected versions and any available patches.
What to do about it
- Monitor your systems for any signs of exploitation.
- Apply patches as soon as they are available from SonicWall.
- Consult the CISA KEV catalog for the latest information on this vulnerability.
- No official fix has been published yet. Monitor the sources below for updates.
How 0Day would have caught this
sonicwall-sma1000 is anywhere in your dependency tree, the engineers who own the affected repositories get a push alert the moment it is flagged — no manual audit to remember to run.Read how this differs from waiting on a scanner to catch a known advisory, or see the exact, read-only access 0Day needs to do this for an organization.
Frequently asked questions
Am I affected?
If you are using SonicWall SMA1000 Appliances, you may be affected. The specific versions impacted have not been published, so consult the primary sources for the latest information.
What should I do right now?
Monitor your systems for signs of exploitation and apply patches as soon as they are available from SonicWall.
Has this been exploited in the wild?
Yes, this vulnerability has been exploited in the wild.