CVE-2025-40602CISA KEV: Actively Exploited

SonicWall SMA1000 Missing Authorization Vulnerability

Published Dec 17, 2025·Updated Dec 17, 2025

Description

SonicWall SMA1000 contains a missing authorization vulnerability that could allow for privilege escalation appliance management console (AMC) of affected devices.

Public Exploits & PoCs2 found

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free