CVE-2016-4381

MEDIUM

HPE XP7 CVAE Suite <8.4.1-02 - Privilege Escalation

Title source: llm

Description

HPE XP7 Command View Advanced Edition (CVAE) Suite 6.x through 8.x before 8.4.1-02, when Replication Manager (RepMgr) and Device Manager (DevMgr) are enabled, allows local users to bypass intended access restrictions via unspecified vectors.

Scores

CVSS v3 4.5
EPSS 0.0006
EPSS Percentile 19.6%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L

Classification

CWE
CWE-264
Status published

Affected Products (2)

hp/xp7_command_view < 8.4.1
n/a/n/a

Timeline

Published Sep 08, 2016
Tracked Since Feb 18, 2026