OpenText ArcSight Logger
by Micro Focus
CVEs (15)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-4190 | Hig | 0.53 | 8.1 | 0.00 | Jun 11, 2024 | Stored Cross-Site Scripting (XSS) vulnerabilities have been identified in OpenText ArcSight Logger. The vulnerabilities could be remotely exploited. | ||
| CVE-2019-3479 | 0.01 | — | 0.07 | Mar 25, 2019 | Mitigates a potential remote code execution issue in ArcSight Logger versions prior to 6.7. | |||
| CVE-2023-24469 | 0.00 | — | 0.00 | Jun 13, 2023 | Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0 | |||
| CVE-2020-11851 | 0.00 | — | 0.04 | Nov 17, 2020 | Arbitrary code execution vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in the execution of arbitrary code. | |||
| CVE-2020-11860 | 0.00 | — | 0.00 | Nov 17, 2020 | Cross-Site Scripting vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in Cross-Site Scripting (XSS) | |||
| CVE-2020-25834 | 0.00 | — | 0.00 | Nov 17, 2020 | Cross-Site Scripting vulnerability on Micro Focus ArcSight Logger product, affecting version 7.1. The vulnerability could be remotely exploited resulting in Cross-Site Scripting (XSS). | |||
| CVE-2019-11657 | 0.00 | — | 0.00 | Dec 17, 2019 | Cross-Site Request Forgery vulnerability in all Micro Focus ArcSight Logger affecting all product versions below version 7.0. The vulnerability could be exploited to perform CSRF attack. | |||
| CVE-2019-11656 | 0.00 | — | 0.00 | Oct 4, 2019 | Stored XSS vulnerability in Micro Focus ArcSight Logger, affects versions prior to Logger 6.7.1 HotFix 6.7.1.8262.0. This vulnerability could allow Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'). | |||
| CVE-2019-11655 | 0.00 | — | 0.00 | Oct 4, 2019 | Unrestricted file upload vulnerability in Micro Focus ArcSight Logger, version 6.7.0 and later. This vulnerability could allow Unrestricted Upload of File with Dangerous type. | |||
| CVE-2019-3485 | 0.00 | — | 0.00 | Jul 24, 2019 | Mitigates a stored cross site scripting issue in ArcSight Logger versions prior to 6.7.1 | |||
| CVE-2019-3484 | 0.00 | — | 0.00 | Mar 25, 2019 | Mitigates a remote code execution issue in ArcSight Logger versions prior to 6.7. | |||
| CVE-2019-3483 | 0.00 | — | 0.00 | Mar 25, 2019 | Mitigates a potential information leakage issue in ArcSight Logger versions prior to 6.7. | |||
| CVE-2019-3482 | 0.00 | — | 0.02 | Mar 25, 2019 | Mitigates a directory traversal issue in ArcSight Logger versions prior to 6.7. | |||
| CVE-2019-3481 | 0.00 | — | 0.00 | Mar 25, 2019 | Mitigates a XML External Entity Parsing issue in ArcSight Logger versions prior to 6.7. | |||
| CVE-2019-3480 | 0.00 | — | 0.00 | Mar 25, 2019 | Mitigates a stored/reflected XSS issue in ArcSight Logger versions prior to 6.7. |
- risk 0.53cvss 8.1epss 0.00
Stored Cross-Site Scripting (XSS) vulnerabilities have been identified in OpenText ArcSight Logger. The vulnerabilities could be remotely exploited.
- CVE-2019-3479Mar 25, 2019risk 0.01cvss —epss 0.07
Mitigates a potential remote code execution issue in ArcSight Logger versions prior to 6.7.
- CVE-2023-24469Jun 13, 2023risk 0.00cvss —epss 0.00
Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0
- CVE-2020-11851Nov 17, 2020risk 0.00cvss —epss 0.04
Arbitrary code execution vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in the execution of arbitrary code.
- CVE-2020-11860Nov 17, 2020risk 0.00cvss —epss 0.00
Cross-Site Scripting vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in Cross-Site Scripting (XSS)
- CVE-2020-25834Nov 17, 2020risk 0.00cvss —epss 0.00
Cross-Site Scripting vulnerability on Micro Focus ArcSight Logger product, affecting version 7.1. The vulnerability could be remotely exploited resulting in Cross-Site Scripting (XSS).
- CVE-2019-11657Dec 17, 2019risk 0.00cvss —epss 0.00
Cross-Site Request Forgery vulnerability in all Micro Focus ArcSight Logger affecting all product versions below version 7.0. The vulnerability could be exploited to perform CSRF attack.
- CVE-2019-11656Oct 4, 2019risk 0.00cvss —epss 0.00
Stored XSS vulnerability in Micro Focus ArcSight Logger, affects versions prior to Logger 6.7.1 HotFix 6.7.1.8262.0. This vulnerability could allow Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').
- CVE-2019-11655Oct 4, 2019risk 0.00cvss —epss 0.00
Unrestricted file upload vulnerability in Micro Focus ArcSight Logger, version 6.7.0 and later. This vulnerability could allow Unrestricted Upload of File with Dangerous type.
- CVE-2019-3485Jul 24, 2019risk 0.00cvss —epss 0.00
Mitigates a stored cross site scripting issue in ArcSight Logger versions prior to 6.7.1
- CVE-2019-3484Mar 25, 2019risk 0.00cvss —epss 0.00
Mitigates a remote code execution issue in ArcSight Logger versions prior to 6.7.
- CVE-2019-3483Mar 25, 2019risk 0.00cvss —epss 0.00
Mitigates a potential information leakage issue in ArcSight Logger versions prior to 6.7.
- CVE-2019-3482Mar 25, 2019risk 0.00cvss —epss 0.02
Mitigates a directory traversal issue in ArcSight Logger versions prior to 6.7.
- CVE-2019-3481Mar 25, 2019risk 0.00cvss —epss 0.00
Mitigates a XML External Entity Parsing issue in ArcSight Logger versions prior to 6.7.
- CVE-2019-3480Mar 25, 2019risk 0.00cvss —epss 0.00
Mitigates a stored/reflected XSS issue in ArcSight Logger versions prior to 6.7.