HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows remote authenticated users to conduct unspecified "file download" attacks via unknown vectors.
References
Link | Resource |
---|---|
http://www.securitytracker.com/id/1035282 | Third Party Advisory VDB Entry |
https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05048452 | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2016-03-16T10:00:00
Updated: 2016-12-01T15:57:02
Reserved: 2016-01-22T00:00:00
Link: CVE-2016-1991
JSON object: View
NVD Information
Status : Analyzed
Published: 2016-03-16T10:59:02.120
Modified: 2018-10-17T18:44:08.623
Link: CVE-2016-1991
JSON object: View
Redhat Information
No data.
CWE