First published: Mon May 20 2024(Updated: )
A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Enterprise Security Manager and ArcSight Platform. The vulnerability could be remotely exploited.
Credit: security@opentext.com
Affected Software | Affected Version | How to fix |
---|---|---|
ArcSight Enterprise Security Manager Express | ||
OpenText ArcSight Platform |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-3482 is classified as a high-severity Stored Cross-Site Scripting (XSS) vulnerability.
CVE-2024-3482 can be exploited remotely by an attacker injecting malicious scripts into web pages accessed by users.
To fix CVE-2024-3482, update your OpenText ArcSight Enterprise Security Manager and ArcSight Platform to the latest patched versions.
The affected products for CVE-2024-3482 include OpenText ArcSight Enterprise Security Manager and OpenText ArcSight Platform.
Yes, user data could potentially be at risk due to the ability of attackers to execute arbitrary scripts in the context of the user session.