Path traversal in SonicWall SMA 1000 - CVE-2026-102257
Published: October 6, 2026
Vulnerability details
The vulnerability allows a remote user to execute arbitrary code.
The vulnerability exists due to path traversal in the SMA1000 Appliance Management Console (AMC) interface when extracting archive files. A remote privileged user can supply a specially crafted archive that causes files to be extracted outside the intended destination directory to execute arbitrary code.