SQL injection in SonicWall SMA 1000 - CVE-2026-4112

 

SQL injection in SonicWall SMA 1000 - CVE-2026-4112

Published: April 8, 2026


Vulnerability identifier: #VU125516
CSH Severity: Low
CVSS v4: 8.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-4112
CWE-ID: CWE-89
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to escalate privileges to primary administrator.

The vulnerability exists due to improper neutralization of special elements used in an sql command in SonicWall SMA1000 series appliances when handling sql queries. A remote privileged user can inject crafted sql input to escalate privileges to primary administrator.

Exploitation requires read-only administrator privileges.


Affected software

SonicWall SMA 1000

How to mitigate CVE-2026-4112

Install security update from vendor's website.

SonicWall SMA 1000 - addressed in versions 12.4.3-03387, 12.5.0-02624

External References

Related Security Bulletins