First published: Sat Feb 16 2013(Updated: )
Unspecified vulnerability in HP ArcSight Connector Appliance before 6.3 and ArcSight Logger 5.2 and earlier allows remote attackers to obtain sensitive information via unknown vectors.
Credit: hp-security-alert@hp.com
Affected Software | Affected Version | How to fix |
---|---|---|
HP ArcSight Connector Appliance Firmware | <=6.2.0.6244.0 | |
HP ArcSight Connector Appliance Firmware | =6.0.0.60023.2 | |
HP ArcSight Connector Appliance Firmware | =c1400 | |
HP ArcSight Connector Appliance Firmware | =c3400 | |
HP ArcSight Connector Appliance Firmware | =c5400 | |
OpenText ArcSight Logger | <=5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-5198 is classified as a moderate severity vulnerability due to its potential to allow unauthorized access to sensitive information.
To remediate CVE-2012-5198, upgrade to HP ArcSight Connector Appliance version 6.3 or later and ArcSight Logger version 5.3 or later.
CVE-2012-5198 affects HP ArcSight Connector Appliance versions up to 6.2 and ArcSight Logger versions up to 5.2.
Yes, CVE-2012-5198 can potentially allow remote attackers to obtain sensitive information, which could lead to data breaches.
There are currently no public reports confirming active exploitation of CVE-2012-5198, but it is advisable to apply updates as a precaution.