#cve-2025-40602

[ follow ]
fromTheregister
11 hours ago

Another bad week for SonicWall as SMA 1000 0-day exploited

SonicWall's official notice, published this week, says users should update to the latest hotfix versions immediately and restrict access to the Appliance Management Console to trusted networks. The vendor's PSIRT team says the issue affects only SMA 1000 appliances and does not impact other SonicWall firewall products or SSL VPN functions, but the fact that attackers have already begun exploiting the flaw underscores how exposed remote-access infrastructure remains.
Information security
Information security
fromThe Hacker News
1 day ago

SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances

SonicWall SMA 100 series appliances contain a locally exploitable privilege escalation vulnerability (CVE-2025-40602) actively exploited; users must apply platform-hotfix updates immediately.
[ Load more ]