Vulnerability Details CVE-2026-4112
Improper neutralization of special elements used in an SQL command (“SQL Injection”) in SonicWall SMA1000 series appliances allows a remote authenticated attacker with read-only administrator privileges to escalate privileges to primary administrator.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 9.9%
CVSS Severity
CVSS v3 Score 7.2
Products affected by CVE-2026-4112
-
cpe:2.3:a:sonicwall:sma8200v:-
-
cpe:2.3:a:sonicwall:sma8200v:12.4.3-02804
-
cpe:2.3:a:sonicwall:sma8200v:12.4.3-02854
-
cpe:2.3:a:sonicwall:sma8200v:12.4.3-03093
-
cpe:2.3:a:sonicwall:sma8200v:12.4.3-03245
-
cpe:2.3:a:sonicwall:sma8200v:12.5.0
-
cpe:2.3:a:sonicwall:sma8200v:12.5.0-02002
-
cpe:2.3:a:sonicwall:sma8200v:12.5.0-02283
-
cpe:2.3:h:sonicwall:sma6200:-
-
cpe:2.3:h:sonicwall:sma6210:-
-
cpe:2.3:h:sonicwall:sma7200:-
-
cpe:2.3:h:sonicwall:sma7210:-
-
cpe:2.3:o:sonicwall:sma6200_firmware:-
-
cpe:2.3:o:sonicwall:sma6200_firmware:12.4.3-02804
-
cpe:2.3:o:sonicwall:sma6200_firmware:12.4.3-02854
-
cpe:2.3:o:sonicwall:sma6200_firmware:12.4.3-03093
-
cpe:2.3:o:sonicwall:sma6200_firmware:12.4.3-03245
-
cpe:2.3:o:sonicwall:sma6200_firmware:12.5.0
-
cpe:2.3:o:sonicwall:sma6200_firmware:12.5.0-02002
-
cpe:2.3:o:sonicwall:sma6200_firmware:12.5.0-02283
-
cpe:2.3:o:sonicwall:sma6210_firmware:-
-
cpe:2.3:o:sonicwall:sma6210_firmware:12.4.3-02804
-
cpe:2.3:o:sonicwall:sma6210_firmware:12.4.3-02854
-
cpe:2.3:o:sonicwall:sma6210_firmware:12.4.3-03093
-
cpe:2.3:o:sonicwall:sma6210_firmware:12.4.3-03245
-
cpe:2.3:o:sonicwall:sma6210_firmware:12.5.0
-
cpe:2.3:o:sonicwall:sma6210_firmware:12.5.0-02002
-
cpe:2.3:o:sonicwall:sma6210_firmware:12.5.0-02283
-
cpe:2.3:o:sonicwall:sma7200_firmware:-
-
cpe:2.3:o:sonicwall:sma7200_firmware:12.4.3-02804
-
cpe:2.3:o:sonicwall:sma7200_firmware:12.4.3-02854
-
cpe:2.3:o:sonicwall:sma7200_firmware:12.4.3-03093
-
cpe:2.3:o:sonicwall:sma7200_firmware:12.4.3-03245
-
cpe:2.3:o:sonicwall:sma7200_firmware:12.5.0
-
cpe:2.3:o:sonicwall:sma7200_firmware:12.5.0-02002
-
cpe:2.3:o:sonicwall:sma7200_firmware:12.5.0-02283
-
cpe:2.3:o:sonicwall:sma7210_firmware:-
-
cpe:2.3:o:sonicwall:sma7210_firmware:12.4.3-02804
-
cpe:2.3:o:sonicwall:sma7210_firmware:12.4.3-02854
-
cpe:2.3:o:sonicwall:sma7210_firmware:12.4.3-03093
-
cpe:2.3:o:sonicwall:sma7210_firmware:12.4.3-03245
-
cpe:2.3:o:sonicwall:sma7210_firmware:12.5.0
-
cpe:2.3:o:sonicwall:sma7210_firmware:12.5.0-02002
-
cpe:2.3:o:sonicwall:sma7210_firmware:12.5.0-02283