CVE Vulnerabilities

CVE-2016-1990

Published: Mar 16, 2016 | Modified: Apr 12, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
4.3 MEDIUM
AV:L/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows local users to gain privileges for command execution via unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
Arcsight_enterprise_security_managerMicrofocus*5.6 (including)
Arcsight_enterprise_security_managerMicrofocus6.0 (including)6.0 (including)
Arcsight_enterprise_security_managerMicrofocus6.5 (including)6.5 (including)
Arcsight_enterprise_security_managerMicrofocus6.8 (including)6.8 (including)
Arcsight_enterprise_security_managerMicrofocus6.9 (including)6.9 (including)

References