Exploited Vulnerabilities Daily
🌐 English

Home › SonicWall

CVE-2026-15410: SonicWall SMA1000 Appliances

EPSS11.7%No. 1239 of 1739 in KEV
CVE year2026listed the same year
Same vendor in KEV19
Same product5
FieldValue
VendorSonicWall
ProductSMA1000 Appliances
NameSonicWall SMA1000 Appliances Code Injection Vulnerability
Added to KEV2026-07-14
US federal due date2026-07-17
Ransomware useKnown
CWECWE-94

CISA description

SonicWall SMA1000 Appliances contain a code injection vulnerability which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands.

Other entries for this product

CVEVendor / productAddedEPSSRansomware
CVE-2026-83549SonicWall SMA1000 Appliances2026-09-0210.7%Unknown
CVE-2026-83548SonicWall SMA1000 Appliances2026-09-028.7%Unknown
CVE-2026-15409SonicWall SMA1000 Appliances2026-07-146.7%Known
CVE-2025-23006SonicWall SMA1000 Appliances2025-01-2423.4%Known

NVD — CVE-2026-15410

Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page

A SonicWall SMA1000 Appliances vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2026-07-14.