CVE-2025-40596: Buffer Overflow
A Stack-based buffer overflow vulnerability in the SMA100 series web interface allows remote, unauthenticated attacker to cause Denial of Service (DoS) or potentially results in code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-40596?
CVE-2025-40596 is considered to have a high severity due to its potential to cause Denial of Service (DoS) or allow code execution.
How do I fix CVE-2025-40596?
To fix CVE-2025-40596, upgrade to the latest firmware version beyond 10.2.2.1-90sv for affected SonicWall SMA devices.
What types of attacks can CVE-2025-40596 facilitate?
CVE-2025-40596 can facilitate remote, unauthenticated attacks leading to Denial of Service or potential remote code execution.
Which SonicWall SMA devices are affected by CVE-2025-40596?
The affected SonicWall SMA devices include those running certain versions of firmware for SMA100, SMA210, and SMA410 series.
Is authentication required to exploit CVE-2025-40596?
No, CVE-2025-40596 can be exploited by remote attackers without authentication.