CVE Database
/

CVE-2025-40595

Back to search

CVE-2025-40595

Published: May 14, 2025

Modified: May 14, 2025

PUBLISHED

Description

A Server-side request forgery (SSRF) vulnerability has been identified in the SMA1000 Appliance Work Place interface. By using an encoded URL, a remote unauthenticated attacker could potentially cause the appliance to make requests to unintended location.

VendorProductVersions

SonicWall

SMA1000

affected
12.4.3-02925 (platform-hotfix) and earlier versions

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now