Vulnerability Database

311,378

Total vulnerabilities in the database

CVE-2016-5402

A code injection flaw was found in the way capacity and utilization imported control files are processed. A remote, authenticated attacker with access to the capacity and utilization feature could use this flaw to execute arbitrary code as the user CFME runs as.

  • Published: Oct 31, 2018
  • Updated: Nov 9, 2025
  • CVE: CVE-2016-5402
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 9
  • AV:N/AC:L/Au:S/C:C/I:C/A:C

CWEs: