CVE-2016-2397: SonicWall Analyzer
Critical severity, CVSS 9.8. EPSS: 6.4% chance of exploitation in the next 30 days.
The cliserver implementation in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote attackers to deserialize and execute arbitrary Java code via crafted XML data.
Affected products
- SonicWall Analyzer: version 7.2 only; version 8.0 only; version 8.1 only
- SonicWall Global Management System: version 7.2 only; version 8.0 only; version 8.1 only
- SonicWall Uma EM5000 Firmware: version 7.2 only; version 8.0 only; version 8.1 only
Published 2016-02-17. Last modified 2026-06-17.