File Write Vulnerability in HPE Network Automation Software
CVE-2016-4386

7.8HIGH

Key Information:

Vendor
HP
Vendor
CVE Published:
29 September 2016

Summary

HPE Network Automation Software version 10.10 contains a vulnerability that permits local users to write to arbitrary files through unspecified vectors. This concern may pose a risk to users by allowing unauthorized access to sensitive system files or configurations, potentially compromising the integrity and security of the software environment. Stakeholders are recommended to assess their systems for this vulnerability and apply any available mitigations.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.