CVE-2026-15410
Summary
CVE-2026-15410 (CVSS 7.2) is a high-severity vulnerability in SonicWall Secure Mobile Access (SMA) 1000 series VPN appliances, discovered by Volexity. It was chained with CVE-2026-15409 (CVSS 10.0) by threat actors โ including the INC Ransomware operation โ to achieve root-level device compromise without authentication.
Details
CVE-2026-15410 (CVSS 7.2) is chained with CVE-2026-15409 (CVSS 10.0) to facilitate arbitrary command execution and full device takeover. The vulnerabilities were exploited as zero-days since at least June 22, 2026, before public disclosure. The INC Ransomware group claimed 885 victims through exploitation of these SMA 1000 flaws.
Remediation
Patches were released by SonicWall in mid-July 2026. Organisations using SMA 1000 series appliances should apply patches immediately.
Related
- Sonicwall Sma Zero Day โ Combined coverage of both CVEs
- Cve 2026 15409 โ Chained vulnerability (CVSS 10.0)
- Inc Ransomware Emerges As Dominant Actor Exploiting Sonicwall Sma 1000 Flaws โ INC Ransomware campaign
Sources
- The Hacker News
- Volexity analysis by Sean Koessel and Steven Adair