CVE-2026-4116Disclosure(sonicwall / sma6200)

LOWCVSS 7.2 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper handling of Unicode encoding in SonicWall SMA1000 series appliances allows a remote authenticated SSLVPN user to bypass Workplace/Connect Tunnel TOTP authentication.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-176

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • sma6200
  • sma6200_firmware
  • sma6210
  • sma6210_firmware

Threat summary

  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 4 classified signals
  • Peaked 2d ago at 2 mentions (2026-04-09); latest day: 1
  • 4 total mentions across 3 days

Affected systems

Vendors
Products
sma6200sma6200_firmwaresma6210sma6210_firmwaresma7200sma7200_firmwaresma7210sma7210_firmwaresma8200v

1 version affected across 9 products

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-04-09: 2Mentions · 2026-04-10: 1Mentions · 2026-05-17: 1Technical Details · 2026-04-09: 204-0904-1005-17
Signal classification1 categories
Disclosure
4100.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-092
Disclosure2
2026-04-101
Disclosure1
2026-05-171
Disclosure1
Full discourse4 posts
  • Autumn Good@autumn_good_35
    Disclosure

    CVE-2026-4112, CVE-2026-4113, CVE-2026-4114, CVE-2026-4116 SonicWall SMA1000 Series Appliances Affected By Multiple Vulnerabilities https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0003

    Post summary

    The text announces that multiple CVEs (CVE-2026-4112, CVE-2026-4113, CVE-2026-4114, CVE-2026-4116) affect SonicWall SMA1000 Series appliances, pointing to a vendor PSIRT advisory for further details.

    00010412
    6.8K followersView on X
  • Israel@f1tym1
    Disclosure

    CVE-2026-4116 | SonicWall SMA1000 Tunnel TOTP Authentication unicode encoding (SNWLID-2026-0003 / EUVD-2026-20908) https://ift.tt/hJRFLuQ A vulnerability was found in SonicWall SMA1000. It has been rated as critical. Affected by this vulnerability is an unknown functionality o…

    Post summary

    The entry announces a critical Unicode encoding vulnerability in SonicWall SMA1000’s TOTP authentication, but offers no proof of concept, exploit code, active exploitation evidence, or remediation guidance.

    0000051
    974 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-4116 Remote Authenticated TOTP Authentication Bypass in SonicWall SMA1000 Series Appliances https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-4116

    Post summary

    The text announces a remote authenticated TOTP bypass vulnerability in SonicWall SMA1000 appliances but includes no PoC, exploit code, active exploitation evidence, or patch details.

    0000035
    4.0K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-4116 Improper handling of Unicode encoding in SonicWall SMA1000 series appliances allows a remote authenticated SSLVPN user to bypass Workplace/Connect Tunnel TOTP authentic… https://www.cve.org/CVERecord?id=CVE-2026-4116

    Post summary

    The CVE-2026-4116 vulnerability is an improper Unicode handling flaw in SonicWall SMA1000 appliances that enables authenticated SSLVPN users to bypass TOTP authentication.

    00000138
    57.0K followersView on X
CPE platform detail9 entries

9 of 9 entries

PartVendorProductVersionTarget SWTarget HW
HWsonicwallsma6200---
OSsonicwallsma6200_firmware---
HWsonicwallsma6210---
OSsonicwallsma6210_firmware---
HWsonicwallsma7200---
OSsonicwallsma7200_firmware---
HWsonicwallsma7210---
OSsonicwallsma7210_firmware---
Appsonicwallsma8200v---

Explore more