CVE-2026-102258
Awaiting Analysis Awaiting Analysis - Queue

Post-authentication Stored XSS in SMA1000 AMC

Vulnerability report for CVE-2026-102258, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-07

Last updated on: 2026-10-07

Assigner: SonicWALL, Inc.

Description

Post-authentication Stored Cross-Site Scripting (XSS) vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to store and potentially execute arbitrary JavaScript code in the Appliance Management Console (AMC).

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-07
Last Modified
2026-10-07
Generated
2026-10-07
AI Q&A
2026-10-07
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 2 associated CPEs
Vendor Product Version / Range
SonicWall SMA1000 12.4.3-03526 (platform-hotfix) and older versions
SonicWall SMA1000 12.5.0-02952 (platform-hotfix) and older versions

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-79 The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is a post-authentication Stored Cross-Site Scripting (XSS) vulnerability in the SMA1000 Appliance Management Console (AMC). It allows a remote authenticated attacker with administrator privileges to inject and store arbitrary JavaScript code in the AMC. This stored code could then be executed in the context of the application.

Detection Guidance

Detection requires manual inspection of the SMA1000 AMC interface for suspicious JavaScript code in stored inputs. Check admin logs for unauthorized modifications and review AMC configuration settings for anomalies.

Impact Analysis

An attacker could exploit this to execute malicious scripts in your browser when accessing the AMC. This could lead to session hijacking, unauthorized actions, data theft, or further compromise of the appliance. Since it requires admin access, the risk is higher if credentials are compromised.

Compliance Impact

This vulnerability could lead to unauthorized access or data breaches, which may violate GDPR (data protection) or HIPAA (health information privacy). Compliance could be impacted if sensitive data is exposed or if the system fails to protect user information as required by these regulations.

Mitigation Strategies

Immediately update the SMA1000 Appliance Management Console to the latest firmware version provided by SonicWall to patch the XSS vulnerability. Disable unnecessary administrative access and monitor AMC logs for suspicious JavaScript execution attempts.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-102258. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart