HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows local users to gain privileges for command execution via unspecified vectors.
References
Link | Resource |
---|---|
http://www.securitytracker.com/id/1035282 | Third Party Advisory VDB Entry |
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05048452 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2016-03-16 10:59
Updated : 2018-10-17 18:44
NVD link : CVE-2016-1990
Mitre link : CVE-2016-1990
CVE.ORG link : CVE-2016-1990
JSON object : View
Products Affected
microfocus
- arcsight_enterprise_security_manager
CWE
CWE-264
Permissions, Privileges, and Access Controls