← back
CVE-2026-83549highunder attackCWE-78

CVE-2026-83549

71Vexday Risk Score

Patch now. It under exploitation confirmed by CISA and has a working public exploit.

ssvc Actcvss 7.8epss 14%
from disclosure to weapon0 days
Published on NVDSep 1
metasploitSep 1
CISA KEV+1d
exploitation probability
14%top 4% of all CVEs
observed exploitation
yesCISA + VulnCheck
Action required by CISAfederal deadline: 2026-09-05

Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

In short

An authenticated administrator of the SMA1000 Appliance Management Console can inject malicious operating system commands through the application, allowing them to execute arbitrary code on the server. This is dangerous because it gives attackers complete control over the affected system.

Technical detail

Post-authentication OS command injection vulnerability in SMA1000 AMC allows an authenticated administrator to execute arbitrary OS commands via improper neutralization of special elements in command inputs. Attack vector requires valid admin credentials and specific conditions; successful exploitation results in remote code execution with system-level privileges.

Summary generated and translated by AI from the official description.
Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
SonicWall · SMA1000