HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows remote authenticated users to conduct unspecified "file download" attacks via unknown vectors.
References
Link | Resource |
---|---|
http://www.securitytracker.com/id/1035282 | Third Party Advisory VDB Entry |
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05048452 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2016-03-16 10:59
Updated : 2018-10-17 18:44
NVD link : CVE-2016-1991
Mitre link : CVE-2016-1991
CVE.ORG link : CVE-2016-1991
JSON object : View
Products Affected
microfocus
- arcsight_enterprise_security_manager
CWE