CVE-2025-40602 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
17
occurrences
First Seen
December 17, 2025
Last Seen
March 6, 2026

CVE-2025-40602 is a vulnerability tracked across 6 threat clusters and 17 intelligence report mentions on ThreatCluster. First observed December 17, 2025; most recent activity March 6, 2026.

Related Threat Clusters

  • SonicWall Patches Actively Exploited Zero-Day Vulnerability CVE-2025-40602

    SonicWall has released a patch for the actively exploited zero-day vulnerability CVE-2025-40602, which affects the Appliance Management Console (AMC) of their devices. This vulnerability allows for deserialization of…

    4 articles · Updated December 17, 2025
  • Google Reports 90 Exploited Zero-Day Vulnerabilities in 2025

    Google's Threat Intelligence Group tracked 90 zero-day vulnerabilities exploited in 2025, a rise from 78 in 2024. Less than half of these vulnerabilities were attributed to specific threat actors, with spyware vendors…

    35 articles · Updated March 5, 2026
  • SonicWall SMA1000 Zero-Day Vulnerability CVE-2025-40602 Exploited

    SonicWall has addressed a medium-severity zero-day vulnerability in the SMA1000 Appliance Management Console. This vulnerability is actively being exploited, affecting users of the SonicWall SMA1000. The company has…

    37 articles · Updated December 17, 2025
  • Cisco ASA Zero-Day Exploited in State-Espionage Campaign

    Cisco disclosed a state-espionage campaign targeting its Adaptive Security Appliances (ASA), which are used for firewall and VPN functions. Attackers exploited two zero-day vulnerabilities to infiltrate government…

    27 articles · Updated December 18, 2025
  • SonicWall SMA1000 Zero-Day Vulnerability Disclosed

    SonicWall has alerted customers to a local privilege escalation vulnerability (CVE-2025-40602) in the SMA1000 Appliance Management Console, which has been exploited in the wild in conjunction with another vulnerability…

    5 articles · Updated December 17, 2025
  • Critical Vulnerability in SonicWall SMA1000 Exploited by Hackers

    A critical privilege escalation vulnerability, CVE-2025-40602, has been discovered in SonicWall's SMA1000 appliance, allowing attackers to gain unauthorized administrative access. The flaw affects the appliance…

    3 articles · Updated December 18, 2025

Recent Intelligence Reports

  • Google Reports 90 Zero-Day Vulnerabilities Exploited by Hackers in 2025 — Cyberpress · March 6, 2026
  • Look What You Made Us Patch: 2025 Zero — Mandiant · March 5, 2026
  • SonicWall SMA 100 Series vulnerability actively exploited — Scworld · December 18, 2025
  • Another bad week for SonicWall as SMA 1000 0-day exploited — Theregister · December 18, 2025
  • Another bad week for SonicWall as SMA 1000 zero — Theregister · December 18, 2025
  • CVE-2025-40602: SonicWall SMA1000 Vulnerability Actively Exploited — Socradar · December 18, 2025
  • CC-4731 — Digital.Nhs.Uk · December 18, 2025
  • SonicWall SMA1000 Vulnerability: Critical Security Patch Released — Redhotcyber · December 18, 2025

CVSS v3.1 Breakdown