CVE-2016-8006
Last modified
CVE-2016-8006 is a vulnerability of currently unknown severity. Authentication bypass vulnerability in Enterprise Security Manager (ESM) and License Manager (LM) in Intel Security McAfee Security Information and Event Management (SIEM) 9.6.0 MR3 allows an administrator to make changes to other SIEM users' information including user passwords without supplying the current administrator password a second time via the GUI or GUI terminal commands.. EPSS estimates a 0.32% chance of exploitation in the next 30 days.
Description
Authentication bypass vulnerability in Enterprise Security Manager (ESM) and License Manager (LM) in Intel Security McAfee Security Information and Event Management (SIEM) 9.6.0 MR3 allows an administrator to make changes to other SIEM users' information including user passwords without supplying the current administrator password a second time via the GUI or GUI terminal commands.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Mcafee | Security Information And Event Management | <= 9.6.0 | Mr3 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-8006?
How severe is CVE-2016-8006?
How do I fix CVE-2016-8006?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2016
- CVE-2016-8000Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2016-8001Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-8002Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2016-8003Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-8004Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2016-8005File extension filtering vulnerability in Intel Security McA…
- CVE-2016-8007Authentication bypass vulnerability in McAfee Host Intrusion…
- CVE-2016-8008Privilege escalation vulnerability in Windows 7 and Windows …
- CVE-2016-8009Privilege escalation vulnerability in Intel Security McAfee …
- CVE-2016-8010Application protections bypass vulnerability in Intel Securi…
- CVE-2016-8011Cross-site scripting vulnerability in Intel Security McAfee …
- CVE-2016-8012Access control vulnerability in Intel Security Data Loss Pre…
Are you affected by CVE-2016-8006?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
