Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
HPE ArcSight Logger before 6.1P1 allows remote authenticated users to execute arbitrary code via unspecified input to the (1) Intellicus or (2) client-certificate upload component.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
HPE ArcSight Logger 权限许可和访问控制漏洞
Vulnerability Description
HPE ArcSight Logger是美国惠普企业(Hewlett Packard Enterprise,HPE)公司的一套日志管理软件。该软件能够收集并整合来自任何日志生成来源的数据,用于日志管理、搜索、编制索引、报告、分析和保留。 HPE ArcSight Logger 6.1P1之前版本中存在安全漏洞,该漏洞源于Intellicus和client-certificate上传组件没有充分过滤输入。远程攻击者可利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A