CVE Vulnerabilities

CVE-2016-1991

Published: Mar 16, 2016 | Modified: Apr 12, 2025
CVSS 3.x
8
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
6 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows remote authenticated users to conduct unspecified file download attacks via unknown vectors.

Affected Software

NameVendorStart VersionEnd Version
Arcsight_enterprise_security_managerMicrofocus5.0 (including)5.6 (including)
Arcsight_enterprise_security_managerMicrofocus6.0 (including)6.0 (including)
Arcsight_enterprise_security_managerMicrofocus6.5 (including)6.5 (including)
Arcsight_enterprise_security_managerMicrofocus6.8 (including)6.8 (including)
Arcsight_enterprise_security_managerMicrofocus6.9 (including)6.9 (including)

References