Description
A local privilege escalation vulnerability due to insufficient authorization in the SonicWall SMA1000 appliance management console (AMC).
Related CPE's
o
sonicwall
sma6200_firmware
2
o
sonicwall
sma6210_firmware
2
o
sonicwall
sma7200_firmware
2
o
sonicwall
sma7210_firmware
2
a
sonicwall
sma8200v
2
References
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-40602
US Government Resource
CVSS impact metrics
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
6.6 · Medium
CVSS V3.1
CVSS V3.0
CVSS V2.0
Information
Source identifier
Vulnerability status
Analyzed
Published
2025-12-18T11:15:46.760
28 hours agoLast modified
2025-12-19T13:57:43.150
1 hour ago