CVE-2016-2396

CRITICAL

The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote authenticated users to execute arbitrary commands via ...

Affects 4 products across 1 vendor.

BCS7.33
CVSS 3.09.9
EPSS4.7%
Percentile92th
PatchUnknown
CVSS Vector — Plain English Remotely exploitable over the network, low complexity, low privileges required, no user interaction needed, can impact systems beyond the vulnerable component, full confidentiality impact, full integrity impact, full availability impact.
CWE Weakness Definitions
CWE-77: Command Injection

Attacker injects operating system commands through application inputs passed to a shell or system call.

Related Attack Patterns (CAPEC)
CAPEC-43 Exploiting Multiple Input Interpretation Layers
via CWE-77
CAPEC-76 Manipulating Web Input to File System Calls
via CWE-77
CAPEC-15 Command Delimiters
via CWE-77
CAPEC-40 Manipulating Writeable Terminal Devices
via CWE-77
CAPEC-75 Manipulating Writeable Configuration Files
via CWE-77
Show all 8
via CWE-77
via CWE-77
via CWE-77

Mapping is CWE-to-CAPEC per MITRE CAPEC 3.9.

◆ AI Analysis — automated analysis, not human-reviewed

This vulnerability was disclosed in 2016. A critical vulnerability affects Sonicwall systems (CVE-2016-2396). No public exploit code is currently available. Isolate affected systems if patching is not feasible.

BSID: BS-2016-GLOBAL-258798-C • Model: rule-based-v1 • Confidence: MEDIUM

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2016-2396?
This vulnerability was disclosed in 2016. A critical vulnerability affects Sonicwall systems (CVE-2016-2396). No public exploit code is currently available. Isolate affected systems if patching is not feasible.
What is the CVSS score for CVE-2016-2396?
CVE-2016-2396 has CVSS 9.9 (Critical). Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H. EPSS: 4.7%.
Is CVE-2016-2396 actively exploited?
No confirmed active exploitation of CVE-2016-2396 as of 2026-09-25.
How do I remediate CVE-2016-2396?
Priority: MEDIUM.
What systems are affected by CVE-2016-2396?
CVE-2016-2396 affects: Sonicwall, Sonicwall, Sonicwall, Sonicwall.
Vulnerability Details
CVE IDCVE-2016-2396
BSIDBS-2016-GLOBAL-258798-C BreachSpider Global ID
CVSS VectorCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Published2016-02-17
Last Modified2026-06-17
ICS Relevance100%
Weakness (CWE)
Domains
NETWORK-INFRA
SourceNVD
Official Description

The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote authenticated users to execute arbitrary commands via vectors related to configuration input.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

Vulnerability details: The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote authenticated users to execute arbitrary commands via vectors related to configuration input. CVSS vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H.

Exploitation Likelihood: LOW

Affected Products
VendorProductFixed Version
Sonicwall Analyzer —
Sonicwall Global Management System —
Sonicwall Uma Em5000 —
Sonicwall Uma Em5000 Firmware —
Remediation

No patch URL on record. Monitor vendor security advisories directly.

Threat Intelligence
● Threat Intelligence Validated: September 2026 | Threat Age: 3876 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
AI Enrichment Record — provenance & audit hash
Modelrule-based-v1
ConfidenceMEDIUM
Enriched At2026-05-24
SHA-512 Audit Hash9bd24522e8c689b81c4edcc8d4b9aa90349bb32fa101648ae24ed12572b9a50878d9f8d183a90a3970fa70453cf89a55064c8c0af4ff31af36cf311f97b4612f
Related CVEs affecting Sonicwall
CVE-2026-83548 10.0 A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work ... CVE-2007-5815 10.0 Absolute path traversal vulnerability in the WebCacheCleaner ActiveX control ... CVE-2021-44228 10.0 Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2... CVE-2026-15409 10.0 A Server-side request forgery (SSRF) vulnerability has been identified in the... CVE-2016-2397 9.8 The cliserver implementation in Dell SonicWALL GMS, Analyzer, and UMA EM5000 ...
View all Sonicwall CVEs →

Critical Severity - Know Your Exposure

A CVSS 9.9 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Create a free account →