CVE-2026-15409 & CVE-2026-15410: Two exploited in the wild vulnerabilities in SonicWall SMA1000, up to 10.0 rating 🔥
Recently disclosed vulnerabilities in SonicWall SMA1000 allow an unauthenticated attacker to open a websocket-based tunnel to arbitrary localhost-only services and subsequently execute arbitrary operating system commands as root.
These flaws are being actively exploited in the wild! PoC exists!
Search at Netlas.io:
👉 Link: https://nt.ls/I9q7F
👉 Dork: http.favicon.hash_sha256:6bb6f64adaa6a7ed4da10a2fe4edf4cb4d9914aa742c7ad607ca4ca678dcd3f1 OR certificate.subject_dn:"HTTPS Management Certificate for SonicWALL (self-signed)"
Vendor's advisory:
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0008
Post #596
617

- 🔥 6
- ❤ 4
- 👍 3