CVE-2022-26330: Potential vulnerability has been identified in Micro Focus ArcSight Logger. The vulnerability could be remotely exploited resulting in Information Disclosure.
Published Aug 31, 2022
·Updated
Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Information Disclosure, or Self Cross-Site Scripting (XSS). This issue affects: Micro Focus ArcSight Logger versions prior to v7.2.2 version and prior versions.
Affected Software
1 affected component
Microfocus Arcsight Logger<7.2.2
Remediation
Information
Micro Focus has made the following mitigation information available to resolve the vulnerabilities for the impacted versions of ArcSight Logger:
• Logger 7.2.2 https://www.microfocus.com/support/downloads/
Event History
Aug 31, 2022
CVE Published
via MITRE·03:52 PM
Data Sourced
via MITRE·03:52 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-26330.
2
What software is affected by this vulnerability?
Micro Focus ArcSight Logger versions prior to v7.2.2 are affected by this vulnerability.
3
What is the severity of CVE-2022-26330?
The severity of CVE-2022-26330 is high with a severity value of 7.5.
4
What are the potential impacts of this vulnerability?
This vulnerability could be remotely exploited resulting in information disclosure or self cross-site scripting (XSS) attacks.
5
How can I fix CVE-2022-26330?
To fix CVE-2022-26330, update Micro Focus ArcSight Logger to version 7.2.2 or later.