


Perceptive Security
SOC/SIEM Consultancy

SonicWall SMA1000 contains a missing authorization vulnerability that could allow for privilege escalation appliance management console (AMC) of affected deviceā¦
Published:
17 December 2025 at 00:00:00
Alert date:
17 December 2025 at 21:02:12
Source:
cisa.gov
SonicWall SMA1000 devices contain a missing authorization vulnerability that enables privilege escalation in the appliance management console (AMC). The vulnerability affects internet-accessible SMA1000 instances and requires immediate mitigation and compromise assessment. Organizations should check for signs of potential compromise after applying security patches. This is a high-criticality issue affecting network security appliances that could allow unauthorized administrative access to affected devices.
Technical details
Mitigation steps:
Affected products:
SonicWall SMA1000
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2025-40602
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0019
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
