CVE-2019-11655: Malicious File Upload
Published Oct 4, 2019
·Updated
Unrestricted file upload vulnerability in Micro Focus ArcSight Logger, version 6.7.0 and later. This vulnerability could allow Unrestricted Upload of File with Dangerous type.
Affected Software
1 affected component
HP ArcSight Logger>=6.7.0
Event History
Oct 4, 2019
CVE Published
via MITRE·07:10 PM
Data Sourced
via MITRE·07:10 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-11655?
CVE-2019-11655 is classified as a high-severity vulnerability due to its potential for unrestricted file uploads.
2
How do I fix CVE-2019-11655?
To fix CVE-2019-11655, upgrade to a patched version of Micro Focus ArcSight Logger that addresses this vulnerability.
3
What impact does CVE-2019-11655 have on my system?
CVE-2019-11655 allows attackers to upload files of dangerous types, potentially compromising system security.
4
Is CVE-2019-11655 present in versions below 6.7.0 of ArcSight Logger?
No, CVE-2019-11655 affects only Micro Focus ArcSight Logger version 6.7.0 and later.
5
What types of files can be uploaded in CVE-2019-11655?
CVE-2019-11655 allows for the upload of files that could be malicious or harmful, leading to security risks.