Show filters
17 Total Results
Displaying 11-17 of 17
Sort by:
Attacker Value
Unknown
MFSBGN03824 rev.1 - ArcSight Management Center, Insufficient Access Control, Re…
Disclosure Date: September 20, 2018 (last updated November 08, 2023)
A potential Cross-Site Request Forgery (CSRF) vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be exploited to allow for Cross-Site Request Forgery (CSRF).
0
Attacker Value
Unknown
MFSBGN03824 rev.1 - ArcSight Management Center, Insufficient Access Control, Re…
Disclosure Date: September 20, 2018 (last updated November 08, 2023)
A potential Access Control vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be exploited to allow for vulnerable Access Controls.
0
Attacker Value
Unknown
MFSBGN03824 rev.1 - ArcSight Management Center, Insufficient Access Control, Re…
Disclosure Date: September 20, 2018 (last updated November 08, 2023)
A potential Reflected Cross-Site Scripting (XSS) Security vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be exploited to allow for Reflected Cross-site Scripting (XSS).
0
Attacker Value
Unknown
CVE-2018-6501
Disclosure Date: September 20, 2018 (last updated November 08, 2023)
Potential security vulnerability of Insufficient Access Controls has been identified in ArcSight Management Center (ArcMC) for versions prior to 2.81. This vulnerability could be exploited to allow for insufficient access controls.
0
Attacker Value
Unknown
MFSBGN03824 rev.1 - ArcSight Management Center, Insufficient Access Control, Re…
Disclosure Date: September 20, 2018 (last updated November 08, 2023)
A potential Directory Traversal Security vulnerability has been identified in ArcSight Management Center (ArcMC) in all versions prior to 2.81. This vulnerability could be remotely exploited to allow Directory Traversal.
0
Attacker Value
Unknown
CVE-2015-5441
Disclosure Date: November 12, 2015 (last updated October 05, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in HP ArcSight Management Center before 2.1 and ArcSight Logger before 6.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2015-6030
Disclosure Date: November 04, 2015 (last updated October 05, 2023)
HP ArcSight Logger 6.0.0.7307.1, ArcSight Command Center 6.8.0.1896.0, and ArcSight Connector Appliance 6.4.0.6881.3 use the root account to execute files owned by the arcsight user, which might allow local users to gain privileges by leveraging arcsight account access.
0