CVE-2026-102255
SMA: Server-Side Request Forgery (SSRF) (CVE-2026-102255)
Description
A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. By abusing this path, a remote unauthenticated attacker could potentially exploit this vulnerability to direct the appliance to issue requests on their behalf and reach internal functionality and perform unauthorized operations.
Affected products
The following versions are affected. Older releases of the same product line are also vulnerable unless stated otherwise.
1000 Models 6210 <12.4.3-036701000 Models 6210 <12.5.0-030821000 Models 7210 <12.4.3-036701000 Models 7210 <12.5.0-030821000 Models 8200v <12.4.3-036701000 Models 8200v <12.5.0-03082Metrics
Show all metrics
Weakness classes (CWE)
CWE-918Base
Server-Side Request Forgery (SSRF)
The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.
cwe.mitre.org →CWE-441Class
Unintended Proxy or Intermediary ('Confused Deputy')
The product receives a request, message, or directive from an upstream component, but the product does not sufficiently preserve the original source of the request before forwarding the request to an external actor that is outside of the product's control sphere. This causes the product to appear to be the source of the request, leading it to act as a proxy or other intermediary between the upstream component and the external actor.
cwe.mitre.org →
References & sources
Reanalysis & status changes
Chronological NVD audit events for this CVE — reanalyses, CVSS updates, CPE diffs.
- CVE Modified2026-10-07 16:17 UTC· 134c704f-9b21-4f2e-91b3-4a467353bcc0
- CVSS V3.1: AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
- SSVC: {"id":"CVE-2026-102255","role":"CISA Coordinator","options":[{"exploitation":"none"},{"automatable":"yes"},{"technica…
- New CVE Received2026-10-07 13:17 UTC· PSIRT@sonicwall.com
- Description: A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. By abusing this path, a remote unauthenticated attacker could potentially exploit this vulnerability to direct the appliance to issue requests on their behalf and reach internal functionality and perform unauthorized operations.
- CWE: CWE-441
- CWE: CWE-918
- Affected: New affected value received. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/102xxx/CVE-2026-102255.json">CVE-2026-102255</a>