Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
SonicWall SMA1000 Appliances
AV AC PR UI S C I A CVSS EPSS %ile KEV
N L N N U H H H 9.8 .2343 97.6 YES
AFFECTED
Product Versions Fixed
SMA1000 12.4.3-02804 (platform-hotfix) and earlier versions. – —
TIMELINE
Jan 9 Reserved by sonicwall
Jan 24 Added to CISA KEV, remediation due 2025-02-14
Jan 24 Published (CNA: sonicwall)
Description
Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific conditions could potentially enable a remote unauthenticated attacker to execute arbitrary OS commands.
Lifecycle
Complete event history — 3 events, chronological
| Date | Event | Detail |
| January 9, 2025 | Reserved | Reserved by sonicwall |
| January 24, 2025 | KEV ADDED | Added to CISA KEV, remediation due 2025-02-14 |
| January 24, 2025 | Published | Published (CNA: sonicwall) |
Affected
Affected products and packages — 1 row
| Vendor | Product / Package | Ecosystem | Version introduced | Fixed |
| SonicWall | SMA1000 | — | 12.4.3-02804 (platform-hotfix) and earlier versions. | — |
About this page
This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2025-23006 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Wednesday, August 19, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.