By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Viral Trending contentViral Trending content
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
Reading: SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances
Notification Show More
Viral Trending contentViral Trending content
  • Home
  • Categories
    • World News
    • Politics
    • Sports
    • Celebrity
    • Business
    • Crypto
    • Tech News
    • Gaming News
    • Travel
  • Bookmarks
© 2024 All Rights reserved | Powered by Viraltrendingcontent
Viral Trending content > Blog > Tech News > SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances
Tech News

SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances

By Viral Trending Content 2 Min Read
Share
SHARE

Dec 17, 2025Ravie LakshmananVulnerability / Network Security

SonicWall has rolled out fixes to address a security flaw in Secure Mobile Access (SMA) 100 series appliances that it said has been actively exploited in the wild.

The vulnerability, tracked as CVE-2025-40602 (CVSS score: 6.6), concerns a case of local privilege escalation that arises as a result of insufficient authorization in the appliance management console (AMC).

It affects the following versions –

  • 12.4.3-03093 (platform-hotfix) and earlier versions – Fixed in 12.4.3-03245 (platform-hotfix)
  • 12.5.0-02002 (platform-hotfix) and earlier versions – Fixed in 12.5.0-02283 (platform-hotfix)
Cybersecurity

“This vulnerability was reported to be leveraged in combination with CVE-2025-23006 (CVSS score 9.8) to achieve unauthenticated remote code execution with root privileges,” SonicWall said.

It’s worth noting that CVE-2025-23006 was patched by the company in late January 2025 in version 12.4.3-02854 (platform-hotfix).

Clément Lecigne and Zander Work of Google Threat Intelligence Group (GTIG) have been credited with discovering and reporting CVE-2025-40602. There are currently no details on the scale of the attacks and who is behind the efforts.

Back in July, Google said it’s tracking a cluster named UNC6148 that’s targeting fully-patched end-of-life SonicWall SMA 100 series devices as part of a campaign designed to drop a backdoor called OVERSTEP. It’s currently not clear if these activities are related.

In light of active exploitation, it’s essential that SonicWall SMA 100 series users apply the fixes as soon as possible.

You Might Also Like

Tech Advisor May 2026 digital magazine: Best of MWC 2026, first look at Google’s Pixel 10a and Samsung’s S26 line-up, and much more

Microsoft 365 Updates March 2026: Teams, Copilot, Entra

Research Ireland awards €4.4m to 46 ‘enterprise-engaged’ projects

Android 17: These Phones Will get the Update

Litter-Robot Promo Codes and Deals: Up to $150 Off

TAGGED: Cyber Security, Cybersecurity, Internet, network security, Patch Management, privilege escalation, Remote Code Execution, SonicWall, Threat Intelligence, Vulnerability
Share This Article
Facebook Twitter Copy Link
Previous Article Some sanctioned oil vessels divert from Venezuela as Trump threatens blockade
Next Article Insurance reforms set India on path to universal coverage by 2047: R Doraiswamy
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Latest News

The KPop Demon Hunters McDonalds Collab Is Basically An Entire Animated Miniseries
Gaming News
Tech Advisor May 2026 digital magazine: Best of MWC 2026, first look at Google’s Pixel 10a and Samsung’s S26 line-up, and much more
Tech News
The supervisor class: how AI agents are remaking the developer’s career
Business
XRP, SOL and ADA price outlook as BTC struggles ahead of key macro events
Crypto
Leaked call shows Szijjártó discussing EU sanctions removal with Russia’s Lavrov
World News
Bitcoin Bombshell: Google’s 2029 Quantum Warning Sparks New Fear
Crypto
How the Cuba Fuel Crisis Is Affecting Everyday Life
World News

About Us

Welcome to Viraltrendingcontent, your go-to source for the latest updates on world news, politics, sports, celebrity, tech, travel, gaming, crypto news, and business news. We are dedicated to providing you with accurate, timely, and engaging content from around the globe.

Quick Links

  • Home
  • World News
  • Politics
  • Celebrity
  • Business
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
  • Sports
  • Crypto
  • Tech News
  • Gaming News
  • Travel

Trending News

cageside seats

Unlocking the Ultimate WWE Experience: Cageside Seats News 2024

The KPop Demon Hunters McDonalds Collab Is Basically An Entire Animated Miniseries

Investing £5 a day could help me build a second income of £329 a month!

cageside seats
Unlocking the Ultimate WWE Experience: Cageside Seats News 2024
May 22, 2024
The KPop Demon Hunters McDonalds Collab Is Basically An Entire Animated Miniseries
March 31, 2026
Investing £5 a day could help me build a second income of £329 a month!
March 27, 2024
Brussels unveils plans for a European Degree but struggles to explain why
March 27, 2024
© 2024 All Rights reserved | Powered by Vraltrendingcontent
  • About Us
  • Contact US
  • Disclaimer
  • Privacy Policy
  • Terms of Service
Welcome Back!

Sign in to your account

Lost your password?