First published: Tue Jun 13 2023(Updated: )
Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0.
Credit: security@opentext.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microfocus Arcsight Logger | <7.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-24470.
The severity of CVE-2023-24470 is critical (9.1).
ArcSight Logger versions prior to 7.3.0 are affected by CVE-2023-24470.
To fix CVE-2023-24470, update ArcSight Logger to version 7.3.0 or later.
You can find more information about CVE-2023-24470 in the references provided: [link1], [link2], [link3].