Security Advisory

CVE-2025-23006

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-01-23 11:37:41
Last updated 2026-02-26 19:08:57
Assigner sonicwall
State PUBLISHED

Description

Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific conditions could potentially enable a remote unauthenticated attacker to execute arbitrary OS commands.