File Write Vulnerability in HPE Network Automation Software
CVE-2016-4386
7.8HIGH
Summary
HPE Network Automation Software version 10.10 contains a vulnerability that permits local users to write to arbitrary files through unspecified vectors. This concern may pose a risk to users by allowing unauthorized access to sensitive system files or configurations, potentially compromising the integrity and security of the software environment. Stakeholders are recommended to assess their systems for this vulnerability and apply any available mitigations.
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved