Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
HP ArcSight Logger 6.0.0.7307.1, ArcSight Command Center 6.8.0.1896.0, and ArcSight Connector Appliance 6.4.0.6881.3 use the root account to execute files owned by the arcsight user, which might allow local users to gain privileges by leveraging arcsight account access.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
多款HP ArcSight产品权限许可和访问控制漏洞
Vulnerability Description
HP ArcSight Logger、ArcSight Command Center和ArcSight Connector都是美国惠普(HP)公司的产品。HP ArcSight Logger是一套日志管理软件;ArcSight Command Center是一款用于监测数据的命令行中心产品;ArcSight Connector是一款用于自动收集和转换日志格式的连接器产品。 多款HP产品中存在安全漏洞,该漏洞源于程序使用root权限执行arcsight用户的文件。本地攻击者可借助arcsight账户访问权限
CVSS Information
N/A
Vulnerability Type
N/A