Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-8006

Опубликовано: 05 янв. 2017
Источник: nvd
CVSS3: 4.4
CVSS2: 1.7
EPSS Низкий

Описание

Authentication bypass vulnerability in Enterprise Security Manager (ESM) and License Manager (LM) in Intel Security McAfee Security Information and Event Management (SIEM) 9.6.0 MR3 allows an administrator to make changes to other SIEM users' information including user passwords without supplying the current administrator password a second time via the GUI or GUI terminal commands.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mcafee:security_information_and_event_management:*:mr3:*:*:*:*:*:*
Версия до 9.6.0 (включая)

EPSS

Процентиль: 23%
0.00076
Низкий

4.4 Medium

CVSS3

1.7 Low

CVSS2

Дефекты

CWE-264

Связанные уязвимости

CVSS3: 4.4
github
больше 3 лет назад

Authentication bypass vulnerability in Enterprise Security Manager (ESM) and License Manager (LM) in Intel Security McAfee Security Information and Event Management (SIEM) 9.6.0 MR3 allows an administrator to make changes to other SIEM users' information including user passwords without supplying the current administrator password a second time via the GUI or GUI terminal commands.

EPSS

Процентиль: 23%
0.00076
Низкий

4.4 Medium

CVSS3

1.7 Low

CVSS2

Дефекты

CWE-264