Device
SonicWall

SonicWall SonicWall SMA 400

- The SonicWall SMA 400 is a cloud-enabled, virtualized secure remote access solution that provides secure connectivity to the network.

SonicWall SonicWall SMA 400

Specifications

OS
SonicOS
USB
2x USB
VPN
SSL VPN, IPsec
Storage
500 GB HDD
Firewall
Yes
LAN Ports
2x GE
WAN Ports
2x GE

Potential Threats

10
Critical
8
High
4
Medium
0
Low

22 Known CVEs

10 critical vulnerabilities found — immediate patching required.
Change all default credentials. Disable unused services and interfaces. Keep firmware up to date.

Default IP

192.168.200.1

Default admin panel address for SonicWall SonicWall SMA 400

Default Credentials — SonicWall SonicWall SMA 400

Username Password Access Type Protocol Port Notes
web HTTPS 443

Known CVE Vulnerabilities (22)

Sort:
CVE-2025-32820 2025

A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path traversal sequence to make any director...

8.8
CVE-2025-32819 2025

A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges to bypass the path traversal checks and delete an arbitra...

8.8
CVE-2025-23008 2025

An improper privilege management vulnerability in the SonicWall NetExtender Windows (32 and 64 bit) client allows a low privileged attacker to modify...

7.2
CVE-2024-53704 2025

An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication.

9.8
CVE-2024-40762 2025

Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG) in the SonicOS SSLVPN authentication token generator that, in certain cases, can b...

9.8
CVE-2024-40766 2024

An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource...

9.8
CVE-2024-38471 2024

Multiple TP-LINK products allow a network-adjacent attacker with an administrative privilege to execute arbitrary OS commands by restoring a crafted b...

6.8
CVE-2024-38475 2024

Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are pe...

9.1
CVE-2024-38474 2024

Substitution encoding issue in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows attacker to execute scripts in directories permitted by the...

9.8
CVE-2024-38473 2024

Encoding problem in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows request URLs with incorrect encoding to be sent to backend services, pot...

8.1

Showing 10 of 22

FAQ

What is the default password for SonicWall SonicWall SMA 400?

The most common default credentials for SonicWall SonicWall SMA 400 are listed in the table above. Always change these immediately after setup.

What is the default username for SonicWall SonicWall SMA 400?

The default username for SonicWall SonicWall SMA 400 is typically "admin". The full list of default credentials including username, password, access type and port is shown in the table on this page.

How do I change the password on SonicWall SonicWall SMA 400?

Log in to the admin panel using the default credentials listed above. Navigate to Administration → Password or System → Account settings. Enter the current password and set a new strong password. Save the changes.

How do I reset SonicWall SonicWall SMA 400 to factory defaults?

Locate the Reset button (usually a small pinhole on the back/bottom of the device). Hold it for 10-30 seconds while powered on until the LEDs flash. The device will reboot with default settings.

Is it safe to leave default credentials unchanged?

No. Default credentials are publicly known and frequently exploited by automated scanners. Change the admin password immediately after first login.

Does SonicWall SonicWall SMA 400 have known security vulnerabilities?

SonicWall SonicWall SMA 400 has 22 known CVE vulnerabilities documented in our database. The full list with severity ratings is shown on this page. Apply the latest firmware update from the manufacturer to address known issues.

Related Devices