First published: Wed Nov 04 2015(Updated: )
HP ArcSight Logger before 6.0 P2 does not limit attempts to authenticate to the SOAP interface, which makes it easier for remote attackers to obtain access via a brute-force approach.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
HP ArcSight Logger | =6.0.0.7307.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.