AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-0516

MEDIUM · CVSS 6.5 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

SonicOS is vulnerable to improper neutralization of HTTP headers, enabling remote attackers to manipulate the Host header. This could lead to unauthorized redirection of firewall management users to arbitrary web domains, potentially compromising sensitive management interfaces. Organizations using SonicOS should prioritize addressing this vulnerability to safeguard their firewall management systems against potential exploitation.

CVE
CVE-2026-0516
Severity
MEDIUM
CVSS
6.5
EPSS
0.21%

Original NVD Description

A improper neutralization of HTTP Headers for Scripting Syntax vulnerability in SonicOS could allow a remote attacker to manipulate the Host header and redirect firewall management users to arbitrary web domains.