First published: Thu Jan 05 2017(Updated: )
Authentication bypass vulnerability in Enterprise Security Manager (ESM) and License Manager (LM) in Intel Security McAfee Security Information and Event Management (SIEM) 9.6.0 MR3 allows an administrator to make changes to other SIEM users' information including user passwords without supplying the current administrator password a second time via the GUI or GUI terminal commands.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Security Information and Event Management | <=9.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8006 has a CVSS score indicating it is a significant vulnerability that could lead to unauthorized access.
CVE-2016-8006 allows an attacker to bypass authentication, enabling them to change other users' information, including passwords.
CVE-2016-8006 affects the 9.6.0 MR3 version of McAfee Security Information and Event Management.
To mitigate CVE-2016-8006, it is recommended to upgrade to the latest version of McAfee SIEM that includes the security patch.
Administrators of McAfee Security Information and Event Management services are particularly at risk due to the nature of the vulnerability.