A improper neutralization of HTTP Headers for Scripting Syntax vulnerability in SonicOS could allow a remote attacker to manipulate the Host header and redirect firewall management users to arbitrary web domains.
| Vendor | Product | Versions |
|---|---|---|
| SonicWall | SonicOS | 6.5.5.2-28n and older versions, 7.0.1-5169 and older versions, 7.3.3-7015 and older versions, 8.2.1-8010 and older versions |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| sonicwall | sonicos | cert_advisory | 90% |