Arcsight Logger
Vendor:
First CVE: Dec 17, 2019 · Active for 6 years
9
Total CVEs
More Total CVEs than 86% of tracked products
2.3
Avg CVEs / Year
Higher CVE frequency than 73% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 45% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Arcsight Logger over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 17, 2019
6 years ago
Most Recent CVE
Jun 13, 2023
1,137 days ago
CVE Severity & Scoring
Arcsight Logger9 CVEs
56%
22%
22%
All CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network9 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None3 (33.3%)
Unknown0 (0.0%)
Required6 (66.7%)
Privileges Required
Low1 (11.1%)
High0 (0.0%)
None8 (88.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-11851CRITICAL Arbitrary code execution vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in the | Nov 17, 2020 | 9.8 | 29 | NO | NO |
CVE-2019-11657HIGH Cross-Site Request Forgery vulnerability in all Micro Focus ArcSight Logger affecting all product versions below version 7.0. The vulnerability could be exploited to perform CSRF a | Dec 17, 2019 | 8.8 | 26 | NO | NO |
CVE-2023-24470CRITICAL Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0. | Jun 13, 2023 | 9.1 | 25 | NO | NO |
CVE-2022-26331MEDIUM Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Information Disclosure, or Self Cross-Si | Aug 31, 2022 | 6.1 | 21 | NO | NO |
CVE-2020-11839MEDIUM Cross Site Scripting (XSS) vulnerability in Micro Focus ArcSight Logger product, affecting all version from 6.6.1 up to version 7.0.1. The vulnerabilities could be remotely exploit | Jun 12, 2020 | 6.1 | 21 | NO | NO |
CVE-2020-25834MEDIUM Cross-Site Scripting vulnerability on Micro Focus ArcSight Logger product, affecting version 7.1. The vulnerability could be remotely exploited resulting in Cross-Site Scripting (X | Nov 17, 2020 | 5.4 | 20 | NO | NO |
CVE-2020-11860MEDIUM Cross-Site Scripting vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in Cross-Si | Nov 17, 2020 | 6.1 | 20 | NO | NO |
CVE-2022-26330HIGH Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Information Disclosure, or Self Cross-Si | Aug 31, 2022 | 7.5 | 19 | NO | NO |
CVE-2023-24469MEDIUM Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0 | Jun 13, 2023 | 6.1 | 18 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (9 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (9 CVEs).
Media Mentions
Signals from CVEs in this product scope (9 CVEs).
Top CNAs Publishing CVEs For Arcsight Logger
Top CWEs
Versions
No cataloged versions.