SonicWall SMA1000 SSLVPN TOTP Bypass via Unicode Encoding Flaw
CVE-2026-4116 Published on April 9, 2026
Improper handling of Unicode encoding in SonicWall SMA1000 series appliances allows a remote authenticated SSLVPN user to bypass Workplace/Connect Tunnel TOTP authentication.
Vulnerability Analysis
CVE-2026-4116 is exploitable with network access, and requires user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to be very high.
Weakness Type
Improper Handling of Unicode Encoding
The software does not properly handle when an input contains Unicode encoding.
Affected Versions
SonicWall SMA1000:- Version 12.4.3-03245 (platform-hotfix) and earlier versions. is affected.
- Version 12.5.0-02283 (platform-hotfix) and earlier versions. is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.