Remote Code Execution Vulnerability in Dell SonicWALL Products
CVE-2016-2397
9.8CRITICAL
Summary
A vulnerability exists in the cliserver implementation of Dell SonicWALL GMS, Analyzer, and UMA EM5000 that allows remote attackers to exploit crafted XML data to deserialize and execute arbitrary Java code. This may grant attackers significant control over affected systems, leading to extensive damage and unauthorized access.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved