Vulnerability Details CVE-2016-2396
The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote authenticated users to execute arbitrary commands via vectors related to configuration input.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.2%
CVSS Severity
CVSS v3 Score 9.9
CVSS v2 Score 9.0
Products affected by CVE-2016-2396
-
cpe:2.3:a:sonicwall:analyzer:7.2
-
cpe:2.3:a:sonicwall:analyzer:8.0
-
cpe:2.3:a:sonicwall:analyzer:8.1
-
cpe:2.3:a:sonicwall:global_management_system:7.2
-
cpe:2.3:a:sonicwall:global_management_system:8.0
-
cpe:2.3:a:sonicwall:global_management_system:8.1
-
cpe:2.3:h:sonicwall:uma_em5000:-
-
cpe:2.3:o:sonicwall:uma_em5000_firmware:7.2
-
cpe:2.3:o:sonicwall:uma_em5000_firmware:8.0
-
cpe:2.3:o:sonicwall:uma_em5000_firmware:8.1