Path Traversal Vulnerability in SonicOS by SonicWall
CVE-2026-0205

6.8MEDIUM

Key Information:

Vendor

Sonicwall

Status
Vendor
CVE Published:
29 April 2026

What is CVE-2026-0205?

A post-authentication Path Traversal vulnerability in SonicOS enables attackers to access restricted services within the network, potentially exposing sensitive data and jeopardizing system integrity. The flaw arises when user authentication does not adequately restrict access to specific resources, allowing an adversary to manipulate input parameters and traverse file directories beyond intended limits. Securing SonicOS is essential for maintaining robust network security and protecting against unauthorized access.

Affected Version(s)

SonicOS Linux 6.5.5.1-6n and older versions

SonicOS Linux 7.0.1-5169 and older versions

SonicOS Linux 7.3.1-7013 and older versions

References

CVSS V3.1

Score:
6.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.