CVE-2019-11656: XSS
Published Oct 4, 2019
·Updated
Stored XSS vulnerability in Micro Focus ArcSight Logger, affects versions prior to Logger 6.7.1 HotFix 6.7.1.8262.0. This vulnerability could allow Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').
Affected Software
2 affected components
HP ArcSight Logger<6.7.1
HP ArcSight Logger=6.7.1
Event History
Oct 4, 2019
CVE Published
via MITRE·07:16 PM
Data Sourced
via MITRE·07:16 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-11656?
The severity of CVE-2019-11656 is considered high due to its potential to enable stored cross-site scripting attacks.
2
How do I fix CVE-2019-11656?
To fix CVE-2019-11656, upgrade to ArcSight Logger versions 6.7.1 HotFix 6.7.1.8262.0 or later.
3
What versions are affected by CVE-2019-11656?
CVE-2019-11656 affects versions of Micro Focus ArcSight Logger prior to 6.7.1 HotFix 6.7.1.8262.0.
4
What type of vulnerability is CVE-2019-11656?
CVE-2019-11656 is a stored cross-site scripting (XSS) vulnerability.
5
Who is affected by CVE-2019-11656?
Organizations using impacted versions of Micro Focus ArcSight Logger are susceptible to CVE-2019-11656.