Unrated severityNVD Advisory· Published Nov 4, 2015· Updated Jun 17, 2026
CVE-2015-2902
CVE-2015-2902
Description
HP ArcSight SmartConnectors before 7.1.6 do not verify X.509 certificates from Logger devices, which allows man-in-the-middle attackers to spoof devices and obtain sensitive information via a crafted certificate.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:hp:arcsight_smartconnectors:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:hp:arcsight_smartconnectors:*:*:*:*:*:*:*:*range: <=7.1.5
- (no CPE)range: <7.1.6
Patches
Vulnerability mechanics
References
3- www.kb.cert.org/vuls/id/350508nvdThird Party AdvisoryUS Government Resource
- h20564.www2.hpe.com/hpsc/doc/public/displaynvdVendor Advisory
- www.securitytracker.com/id/1034078nvd
News mentions
0No linked articles in our index yet.