Denial of service - CVE-2016-4384

 

Denial of service - CVE-2016-4384

Published: September 21, 2016


Vulnerability identifier: #VU563
CSH Severity: Medium
CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2016-4384
CWE-ID: CWE-284
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vendor:
Affected software:

Detailed vulnerability description

The vulnerability allows a remote user to perform DoS attack on the target system.
The weakness exists due to security bypass. The vulnerability was detected in HPE LoadRunner and Performance Center and allows attacker to cause denial of service conditions.
Successful exploitation of the vulnerability leads to denial of service on the vulnerable system.

How to mitigate CVE-2016-4384

Update HPE Performance Center to 12.50.
Update HPE LoadRunner to 12.50.


Sources