Vulnerability Description
A remote code execution security vulnerability has been identified in all versions of the HP ArcSight WINC Connector prior to v7.3.0.
CVSS Score
9.8
CRITICAL
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Hp | Arcsight Winc Connector | < 7.3.0 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/93789Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1037068Third Party AdvisoryVDB Entry
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c05Vendor Advisory
- http://www.securityfocus.com/bid/93789Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1037068Third Party AdvisoryVDB Entry
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-c05Vendor Advisory
FAQ
What is CVE-2016-4391?
CVE-2016-4391 is a vulnerability with a CVSS score of 9.8 (CRITICAL). A remote code execution security vulnerability has been identified in all versions of the HP ArcSight WINC Connector prior to v7.3.0.
How severe is CVE-2016-4391?
CVE-2016-4391 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2016-4391?
Check the references section above for vendor advisories and patch information. Affected products include: Hp Arcsight Winc Connector.