CVE-2023-24470: XEE
Published Jun 13, 2023
·Updated
Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0.
Affected Software
1 affected component
Microfocus Arcsight Logger<7.3.0
Event History
Jun 13, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for the potential XML External Entity Injection in ArcSight Logger?
The vulnerability ID is CVE-2023-24470.
2
What is the severity of CVE-2023-24470?
The severity of CVE-2023-24470 is critical (9.1).
3
Which versions of ArcSight Logger are affected by CVE-2023-24470?
ArcSight Logger versions prior to 7.3.0 are affected by CVE-2023-24470.
4
How can I fix CVE-2023-24470?
To fix CVE-2023-24470, update ArcSight Logger to version 7.3.0 or later.
5
Where can I find more information about CVE-2023-24470?
You can find more information about CVE-2023-24470 in the references provided: [link1], [link2], [link3].