CVE-2019-3486: ArcSight Security Management Center stored cross site script issue in version prior to 2.9.1
Published Jul 25, 2019
·Updated
Mitigates a stored cross site scripting issue in ArcSight Security Management Center versions prior to 2.9.1
Affected Software
1 affected component
HP Arcsight Management Center<2.9.1
Remediation
Information
Upgrade to ArcSight Security Management Center to version 2.9.1 or later.
Event History
Jul 25, 2019
CVE Published
via MITRE·02:30 PM
Data Sourced
via MITRE·02:30 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-3486?
CVE-2019-3486 has been classified as a moderate severity vulnerability due to the potential for stored cross-site scripting attacks.
2
How do I fix CVE-2019-3486?
To fix CVE-2019-3486, upgrade to ArcSight Security Management Center version 2.9.1 or later.
3
What versions of software are affected by CVE-2019-3486?
CVE-2019-3486 affects versions of ArcSight Security Management Center prior to 2.9.1.
4
What type of vulnerability is CVE-2019-3486?
CVE-2019-3486 is a stored cross-site scripting vulnerability.
5
Is there a workaround for CVE-2019-3486?
There are no documented workarounds for CVE-2019-3486; upgrading is the recommended action.