📦

arcsight_logger

Vendor: microfocus

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 1 Remote Access
Total CVEs 9 Total Indexed
Avg. EPSS 0.62% Exploit Prob.
Latest CVE CVE-2023-24470 Jun 13

Security Vulnerability Index

Page 1 / 1
9.1 CVSS

Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0.

EPSS: 0.17%
6.1 CVSS

Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0

EPSS: 0.15%
6.1 CVSS

Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Information Disclosure, or Self Cross-Site Scripting (XSS). This issue affects: Micro Focus ArcSight Logger versions prior to v7.2.2 version and prior versions.

EPSS: 0.25%
6.5 CVSS

Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Information Disclosure, or Self Cross-Site Scripting (XSS). This issue affects: Micro Focus ArcSight Logger versions prior to v7.2.2 version and prior versions.

EPSS: 0.29%
9.8 CVSS
CVE-2020-11851
RCE Exploit Found

Arbitrary code execution vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in the execution of arbitrary code.

EPSS: 3.88%
5.4 CVSS

Cross-Site Scripting vulnerability on Micro Focus ArcSight Logger product, affecting version 7.1. The vulnerability could be remotely exploited resulting in Cross-Site Scripting (XSS).

EPSS: 0.21%
6.1 CVSS

Cross-Site Scripting vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in Cross-Site Scripting (XSS)

EPSS: 0.24%
6.1 CVSS

Cross Site Scripting (XSS) vulnerability in Micro Focus ArcSight Logger product, affecting all version from 6.6.1 up to version 7.0.1. The vulnerabilities could be remotely exploited resulting in Cross-Site Scripting (XSS) or information disclosure.

EPSS: 0.24%
8.8 CVSS

Cross-Site Request Forgery vulnerability in all Micro Focus ArcSight Logger affecting all product versions below version 7.0. The vulnerability could be exploited to perform CSRF attack.

EPSS: 0.18%