VYPR
Unrated severityNVD Advisory· Published Nov 4, 2015· Updated Jun 17, 2026

CVE-2015-2902

CVE-2015-2902

Description

HP ArcSight SmartConnectors before 7.1.6 do not verify X.509 certificates from Logger devices, which allows man-in-the-middle attackers to spoof devices and obtain sensitive information via a crafted certificate.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • cpe:2.3:a:hp:arcsight_smartconnectors:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:hp:arcsight_smartconnectors:*:*:*:*:*:*:*:*range: <=7.1.5
    • (no CPE)range: <7.1.6

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.