CVE-2015-6860

high-risk
Published 2016-01-05

HPE Network Switches with software 15.16.x and 15.17.x allow local users to bypass intended access restrictions via unspecified vectors, a different vulnerability than CVE-2015-6859.

Do I need to act?

-
0.05% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
8
CVSS 8.4/10 High
LOCAL / LOW complexity

Affected Products (20)

J8697A
J8698A
J8699A
J8715A
J8715B
J9091A
J9264A
J9310A
J9311A
J9451A
J9452A
J9473A
J9532A
J9533A
J9539A
J9576A
J9584A
J9588A
J9641A
J9642A

Affected Vendors

Hp
52
/ 100
high-risk
Severity 26/34 · High
Exploitability 0/34 · Minimal
Exposure 26/34 · High