Loading
ZOHO WebNMS Framework 5.2 and 5.2 SP1 allows remote attackers to bypass authentication and impersonate arbitrary users via the UserName HTTP header.
Use CWE-20, Zohocorp vendor hub and Webnms Framework product page to widen CVE-2016-6603 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2016-6602, CVE-2016-6600 and CVE-2016-6601 for nearby disclosures in the same product family. Additional editorial context is available in Cybersecurity Weekly Roundup: April 27, 2026 — Critical Zero-Days and Framework Failures.