CVE Vulnerabilities

CVE-2016-1990

Published: Mar 16, 2016 | Modified: Oct 17, 2018
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
4.3 MEDIUM
AV:L/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows local users to gain privileges for command execution via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Arcsight_enterprise_security_manager Microfocus * 5.6 (including)
Arcsight_enterprise_security_manager Microfocus 6.0 (including) 6.0 (including)
Arcsight_enterprise_security_manager Microfocus 6.5 (including) 6.5 (including)
Arcsight_enterprise_security_manager Microfocus 6.8 (including) 6.8 (including)
Arcsight_enterprise_security_manager Microfocus 6.9 (including) 6.9 (including)

References