SonicWall SMA 100 Appliances Vulnerability Exploited in the Wild
Summary
Hide ▲
Show ▼
SonicWall has released patches for a local privilege escalation vulnerability (CVE-2025-40602) in SMA 100 series appliances, which is being actively exploited. The flaw, with a CVSS score of 6.6, arises from insufficient authorization in the appliance management console. It is being exploited in combination with CVE-2025-23006 to achieve unauthenticated remote code execution with root privileges. The affected versions include 12.4.3-03093 and earlier, fixed in 12.4.3-03245, and 12.5.0-02002 and earlier, fixed in 12.5.0-02283. The vulnerability was reported by Clément Lecigne and Zander Work of Google Threat Intelligence Group (GTIG). SonicWall advises users to apply the fixes immediately due to active exploitation.
Timeline
-
17.12.2025 20:17 1 articles · 3h ago
SonicWall Releases Patches for Actively Exploited CVE-2025-40602
SonicWall has released patches for CVE-2025-40602, a local privilege escalation vulnerability in SMA 100 series appliances. The vulnerability is being actively exploited in combination with CVE-2025-23006 to achieve unauthenticated remote code execution with root privileges. The affected versions include 12.4.3-03093 and earlier, fixed in 12.4.3-03245, and 12.5.0-02002 and earlier, fixed in 12.5.0-02283.
Show sources
- SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances — thehackernews.com — 17.12.2025 20:17
Information Snippets
-
CVE-2025-40602 is a local privilege escalation vulnerability with a CVSS score of 6.6.
First reported: 17.12.2025 20:171 source, 1 articleShow sources
- SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances — thehackernews.com — 17.12.2025 20:17
-
The vulnerability is being exploited in combination with CVE-2025-23006 to achieve unauthenticated remote code execution with root privileges.
First reported: 17.12.2025 20:171 source, 1 articleShow sources
- SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances — thehackernews.com — 17.12.2025 20:17
-
Affected versions include 12.4.3-03093 and earlier, fixed in 12.4.3-03245, and 12.5.0-02002 and earlier, fixed in 12.5.0-02283.
First reported: 17.12.2025 20:171 source, 1 articleShow sources
- SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances — thehackernews.com — 17.12.2025 20:17
-
CVE-2025-40602 was discovered and reported by Clément Lecigne and Zander Work of Google Threat Intelligence Group (GTIG).
First reported: 17.12.2025 20:171 source, 1 articleShow sources
- SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances — thehackernews.com — 17.12.2025 20:17
-
SonicWall advises immediate patching due to active exploitation.
First reported: 17.12.2025 20:171 source, 1 articleShow sources
- SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances — thehackernews.com — 17.12.2025 20:17