Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2016-2397

EPSS 5.04% · P90
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2016-2397

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The cliserver implementation in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote attackers to deserialize and execute arbitrary Java code via crafted XML data.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
多款Dell产品安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Dell SonicWALL GMS(Global Management System)、Analyzer和UMA EM5000都是美国戴尔(Dell)公司的产品。GMS是一套全球管理系统,可快速部署和集中管理SonicWALL基础架构。Analyzer是一套针对SonicWALL基础架构的网络分析器软件。UMA EM5000是一套通用管理设备软件。 多款Dell产品的cliserver实现过程中存在安全漏洞。远程攻击者可借助特制的XML数据利用该漏洞反序列化和执行任意代码。以下产品及版本受到影响:Del
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2016-2397

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2016-2397

登录查看更多情报信息。

Same Patch Batch · n/a · 2016-02-17 · 27 CVEs total

CVE-2015-7798Cybozu Office 跨站脚本漏洞
CVE-2016-1153Cybozu Office customapp 输入验证漏洞
CVE-2016-1152Cybozu Office 安全漏洞
CVE-2016-1151Cybozu Office 跨站请求伪造漏洞
CVE-2016-1150Cybozu Office 跨站脚本漏洞
CVE-2016-1149Cybozu Office 跨站脚本漏洞
CVE-2015-8489Cybozu Office customapp 拒绝服务漏洞
CVE-2015-8488Cybozu Office 安全漏洞
CVE-2015-8487Cybozu Office 安全漏洞
CVE-2015-8486Cybozu Office 安全漏洞
CVE-2015-8485Cybozu Office 安全漏洞
CVE-2015-8484Cybozu Office 安全漏洞
CVE-2015-8483Cybozu Office 开放重定向漏洞
CVE-2016-1333Cisco 1000 Series Connected Grid Routers IOS 拒绝服务漏洞
CVE-2015-7797Cybozu Office 跨站脚本漏洞
CVE-2015-7796Cybozu Office 跨站脚本漏洞
CVE-2015-7795Cybozu Office 跨站脚本漏洞
CVE-2016-2396多款Dell产品任意命令执行漏洞
CVE-2016-2072Citrix Systems NetScaler Application Delivery Controller 和NetScaler Gateway 安全漏洞
CVE-2016-2071Citrix Systems NetScaler Application Delivery Controller 和NetScaler Gateway 安全漏洞

Showing top 20 of 27 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2016-2397

No comments yet


Leave a comment