CVE-2026-4113Disclosure(sonicwall / sma6200)

LOWCVSS 7.2 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

An observable response discrepancy vulnerability in the SonicWall SMA1000 series appliances allows a remote attacker to enumerate SSL VPN user credentials.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-204

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • sma6200
  • sma6200_firmware
  • sma6210
  • sma6210_firmware

Threat summary

  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 4 classified signals
  • General: 1 classified signal
  • Peaked 2d ago at 3 mentions (2026-04-09); latest day: 1
  • 5 total mentions across 3 days

Affected systems

Vendors
Products
sma6200sma6200_firmwaresma6210sma6210_firmwaresma7200sma7200_firmwaresma7210sma7210_firmwaresma8200v

1 version affected across 9 products

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-04-09: 3Mentions · 2026-04-10: 1Mentions · 2026-05-17: 1Technical Details · 2026-04-09: 304-0904-1005-17
Signal classification2 categories
Disclosure
480.0%
General
120.0%
Referenced assets6 URLs
Classification over time
DateTotalLabels
2026-04-093
Disclosure3
2026-04-101
Disclosure1
2026-05-171
General1
Full discourse5 posts
  • Autumn Good@autumn_good_35
    Disclosure

    CVE-2026-4112, CVE-2026-4113, CVE-2026-4114, CVE-2026-4116 SonicWall SMA1000 Series Appliances Affected By Multiple Vulnerabilities https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0003

    Post summary

    The text announces the identification of multiple CVEs (CVE‑2026‑4112, CVE‑2026‑4113, CVE‑2026‑4114, CVE‑2026‑4116) affecting SonicWall SMA1000 Series Appliances, referencing the vendor’s vulnerability detail page, but does not provide technical or exploit information.

    00010412
    6.8K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-4113 An observable response discrepancy vulnerability in the SonicWall SMA1000 series appliances allows a remote attacker to enumerate SSL VPN user credentials. https://www.cve.org/CVERecord?id=CVE-2026-4113

    Post summary

    The text provides a brief description of CVE‑2026‑4113, highlighting a credential enumeration flaw in SonicWall SMA1000 devices, but gives no PoC, exploit, patch, or evidence of active exploitation.

    00010173
    57.0K followersView on X
  • Israel@f1tym1
    General

    CVE-2026-4113 | SonicWall SMA1000 SSL VPN response discrepancy (SNWLID-2026-0003 / EUVD-2026-20904) https://ift.tt/Wft5KjJ A vulnerability was found in SonicWall SMA1000. It has been classified as problematic. This impacts an unknown function of the component SSL VPN. The mani…

    Post summary

    The passage lists a vulnerability’s identifier and a vague description but provides no details on exploitation, patches, or technical specifics.

    0000055
    974 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-4113 Observable Response Discrepancy in SonicWall SMA1000 Series Enable... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-4113 Customizable Vulnerability Alerts: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=4

    Post summary

    An initial disclosure of a response discrepancy vulnerability affecting SonicWall SMA1000 Series, with a link to further details but no PoC, exploit code, or patch information.

    0000056
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-4113 An observable response discrepancy vulnerability in the SonicWall SMA1000 series appliances allows a remote attacker to enumerate SSL VPN user credentials. https://www.cve.org/CVERecord?id=CVE-2026-4113 ----- Traducción: CVE-2026-4113 Una vulnerabilidad… http://infoflow.cloud`

    Post summary

    The tweet announces CVE-2026-4113, a response discrepancy vulnerability that lets remote attackers enumerate SSL VPN credentials, with no PoC, exploit, or patch details provided.

    0000051
    67 followersView on X
CPE platform detail9 entries

9 of 9 entries

PartVendorProductVersionTarget SWTarget HW
HWsonicwallsma6200---
OSsonicwallsma6200_firmware---
HWsonicwallsma6210---
OSsonicwallsma6210_firmware---
HWsonicwallsma7200---
OSsonicwallsma7200_firmware---
HWsonicwallsma7210---
OSsonicwallsma7210_firmware---
Appsonicwallsma8200v---

Explore more