First published: Tue Jul 19 2011(Updated: )
Windows Event Log SmartConnector in HP ArcSight Connector Appliance before 6.1 uses world-writable permissions for exported report files, which allows local users to change or delete log data by modifying a file, a different vulnerability than CVE-2011-0770.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hp Arcsight C5400 Appliance | ||
Hp Arcsight C5200 Appliance | ||
Hp Arcsight C3200 Appliance | ||
Hp Arcsight C3400 Appliance | ||
Hp Arcsight C1300 Appliance | ||
Hp Arcsight C1000 Appliance | ||
Hp Windows Event Log Smartconnector | <=6.0.0.60023.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.