Security Advisory

CVE-2026-15410

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-14 19:43:03
Last updated 2026-07-16 03:55:20
Assigner sonicwall
CVSS score not scored
State PUBLISHED

Description

Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands.