CVE-2016-8006: McAfee Security Information And Event Management
Medium severity, CVSS 4.4. EPSS: 0.3% chance of exploitation in the next 30 days.
Authentication bypass vulnerability in Enterprise Security Manager (ESM) and License Manager (LM) in Intel Security McAfee Security Information and Event Management (SIEM) 9.6.0 MR3 allows an administrator to make changes to other SIEM users' information including user passwords without supplying the current administrator password a second time via the GUI or GUI terminal commands.
Affected products
- McAfee Security Information And Event Management: up to and including 9.6.0
Published 2017-01-05. Last modified 2026-06-17.